te 
7 
a 
“w 


rv) 














From the Editor 


Information operations (IO), and intelligence support to 10, are simultaneously frustrating and intriguing. This “new” 
field of warfare fascinates many. A word of caution is advisable. 


...there is no new thing under the sun. —Ecclesiastes 1:9 


Indeed, if one considers the various forms and types of IO, one can easily make the case that various forms of |O have 
been around for more than 2,500 years. Need proof? 


Therefore there are five kinds of spies used: local spies, internal spies, double spies, doomed spies, and living 
spies.... For doomed spies we use agents to spread misinformation to the enemy.... This is essential for warfare, and 
what the army depends on to move [emphasis added]. —Sun TzZu, The Art of War, Chapter 13, The Use of Spies 


Information is a weapon and a force multiplier. This’ crystal-clear understanding of the nature of information is the 
primary underpinning to all of our current security regulations; that is, to protect friendly information. Likewise, this 
understanding is precisely what drives our need to collect information about our adversaries; establish priority intelli- 
gence requirements; conduct the art and science of intelligence synchronization; engage intelligence, reconnais- 
sance, and surveillance systems; and so forth. That 1O now @xtends to the World Wide Web, and includes “cyberwarfare,” 
assessment of adversary and neutral media sources, etc.,,does not make it a new principle of war. It is merely that with 
these new applications, we are in the process of considering the 10 aspect of war in new ways, with new implications 


and ramifications. ; 


When considering carefully the contributions containéd in this i$sue of MIPB, it is vital to return to the basic definitions 
of terms. Some of these appear below: 


Essential Elements of Friendly Information (EEF 
likely to ask about specific friendly intentions, capab 
operational effectiveness. [JP 1-02, DOD Dj 


10 are actions taken to affect adversary 
information and information systems. (JP 3 







s by adversary officials and intelligence systems are 
activities So.they can obtain answers critical to their 
ry and Associated Terms] 


tion a rmation s s ems (INFOSYS) while defending one’s own 
wmation Operations] 
ae , ese : Bey RIM 
10 are continuous military operations the Military informatia@n-énvironment that enable, enhance, and protect 
the friendly force’s*ability to collect, process,.and.act [upjon information to aeMieve an advantage.across the full range 
of military operations; [lO} include interacting with the global information environment and exploiting or denying an 
adversary’s information and decision capabilities. [ FM 3-13, information Operations] 


Information Security is the protection andydefé INFOSYS against unauthorized access or 
modification of information whether in stofagey id against denial of services to authorized 
users. INFOSEC includes those measures necessary to detect; document, and counter such threats. Information 
security comprises computer security and communigations security. [JP 3-13] 


Operations Security. OPSEC is a process of identifying critical information and subsequently analyzing friendly 
actions attendant to military operations and other activities to a) Identify those actions observable by adversary intelli- 
gence systems. b) Determine indicators hostile intelligence systems might obtain with which they could interpret or 
piece together to derive critical information in time to be useful to adversaries. c) Select and execute measures that 
eliminate or reduce to an acceptable level the vulnerabilities of friendly actions to adversary exploitation. [JP 3-13] 














Although the intuitive understanding of IO is solid, actually codifying the principles; doctrine; and tactics, techniques, 
and procedures of IO in modern venues—across the full spectrum of operations—is a daunting task. First, there is the 
matter of proponency: Since IO cuts across all echelons tactical through national, affects all services, and is both 
offensive and defensive in nature, who “owns” it? “Ownership” means responsibility for training, leader development, 


personnel management, and a host of other issues. Again, reach exceeds grasp. It is one thing to be aware of the 
issues, another to solve them 


Many of the articles in this issue of MIPB should provoke thought, and are not meant as a definitive statement of 
where the Army is heading; rather, these are the insights and suggestions from readers like you who feel they have an 
idea they should contribute for public debate. We thank you for your efforts in this vital and multifaceted debate. 


CW3 Del E. Stewart 
= Managing Editor 


a. 
































MILITARY 


INTELLIGENCE 









PB 34-03-3 
Volume 29 Number 3 
July-September 2003 





STAFF: 
Commanding General 
Major General James A. Marks 


Deputy Commandant 
for Futures 
Jerry V. Proctor 


Director of Training 
Development and Support 
Colonel Jack W. Russell 


Deputy Director, DTDS 
Russell W. Watson, Ph.D 


Chief, Doctrine Division 
Stephen B. Leeder 
Managing Editor 

Chief Warrant Officer Three 
Del E. Stewart 


Editor 
Elizabeth A. McGovern 


Associate Editor 
JoNell M. Elkins 


Operations Supervisor 
Captain Dean A. Phillips 


Design Director 
Specialist Ernesto A. Bolafos 


Associate Design Director 
and Administration 
Specialist Misty L. Simpkin 


Cover Design: 
Specialist Misty L. Simpkin 


Purpose: The U.S. Army Intelli- 
gence Center and Fort Huachuca 
(USAIC&FH) publishes the Military 
Intelligence Professional Bulle- 
tin quarterly under provisions of AR 
25-30. MIPB disseminates material 
designed to enhance individuals’ 
knowledge of past, current, and 
emerging concepts, doctrine, mate- 
rial, training, and professional de- 
velopments in the MI Corps. 


Subscription: Subscription rates 
are $21.00 (Domestic, APO, and 
FPO) and $29.40 (Foreign). For in- 
formation on changes of address 
and subscriptions, see page 8. 


Disclaimer: This publication pre- 
sents professional information, but 
the views expressed herein are 
those of the authors, not the De- 
partment of Defense or its elements. 
The content does not necessarily 
reflect the official U.S. Army posi- 
tion and does not change or super- 
sede any information in other U.S. 
Army publications. We reserve the 
right to edit any submitted material. 


Contact Information for MI/PB is 
on page 68. 





¢ 


STOCKWELL - MUDD 


SEP 1 12003 
LIBRARIES 


Check us out on the Internet 


http://mipb.futures.army.mil 




















FEATURES 
5 Visualizing the Information Environment 
by Marc J. Romanych (Major, U.S. Army, Retired) 
9 Information Operations in Support of Demonstrations and 
Shows of Force 
by Lieutenant Colonel Arthur N. Tulak 
12 Measures of Effectiveness in the Information Environment 
by Lieutenant Colonel David C. Grohoski, Steven M. Seybert (Major, 
U.S. Army, Retired), and Marc J. Romanych (Major, U.S. Army, Retired) 
17‘ Reserve Support to |O: The 3431st MI Detachment (USAR) at NGIC 
by Sherwin H. Terry, Jr. 
19 Intelligence Support to Information Operations: Staff Chaplains 
by Major Norman Emery 
22 Like Adding Wings to a Tiger—Chinese Information War Theory 
and Practice 
by Timothy L. Thomas 
28 Determining Battlefield Effects in an Urban Environment: MOUT 
Terrain Analysis 
by Lieutenant Colonel Alfonso J. Ahuja 
32. The New Counterintelligence Response to the Cyberthreat 
by Chief Warrant Officer Two Bobby Allen 
36 = Cl in Information Operations: Enabling Operators and Defining 
Emerging Roles for Cl in Army |O 
by Chief Warrant Officer Two Jason L. Morton 
38 Nonpassive Defense of the Army’s Computer Networks 
by Thomas G. King 
40 Intelligence in Support of Strategic Signal Units 
by James R. Lint 
43 Bridging the Intelligence Gap in the Heartland: Evolving MI Roles 
in Support to Domestic Criminal Threats 
by Major James Klotz and Lieutenant Colonel Michael French 
47 Get Your Soldiers Ready for Deployment 
by Command Sergeant Major Lori L. Brown 
49 Intelligence and Electronic Warfare Tactical Proficiency Trainer 
(IEWTPT) 
by Captain Misty L. Martin 
51 CGS and Apache-Longbow Linkage—A 2d Infantry Division 
Initiative 
by First Lieutenant Christine V. Fallon, Staff Sergeant Steven D. Jaime, 
and Sergeant Tony Donaldson 
53 Global War on Terrorism: Polygraph—An Intelligence Tool 
by Chief Warrant Officer Three Joe Don Castleberry 
DEPARTMENTS 
2 Vantage Point 65 111th Training Notes 
3 CSM Forum 66 Distance Learning 
56 Doctrine Corner 67 Professional Reader 
61 Proponent Notes Unit Profile: 310th MI 
64 Sly Fox Battalion 
By order of the Secretary of the Army: 
Official: 2 
JOEL B. HUDSON JOHN M. KEANE 


Administrative Assistant to the 
Secretary of the Army 


General, United States Army 
Acting, Chief of Staff = 
0314302 

















Always Out Front 


by Brigadier General John M. Custer 


The U.S. Army Intelligence Cen- 
ter (USAIC) will deploy iCON, the 
Intelligence Community Online 
Network, in July 2003 as our 
newest effort to transform the 
Intelligence Center into a Digi- 
tized Center of Excellence for the 
Army. It will be a secure web | 
portal for MI professionals world- | 
wide to conduct collaboration, as | 
well as an online workspace to 
conduct daily operations within 
USAIC. ICON will be MI’s portal 
under Army Knowledge Online 
(AKO)}—we envision ICON to be 
the daily center of business at 
the Intelligence Center and 
across the MI community. It will 
integrate many daily use pro- 
cesses and applications to include E-mail, web con- 
tent, command reports, and connection to local da- 
tabases, among other features. ICON will also have 
collaborative capabilities like chat rooms, message 
forums, and document sharing. ICON will provide MI 
professionals worldwide with a powerful tool to ex- 
change ideas; tactics, techniques, and procedures 
(TTPs); and other mission-essential information. MI 
professionals should seek out ICON as the primary 
Branch and program proponency forum through which 
to gather information from USAIC and other organiza- 
tions. It will be the “one-stop shop” for anything and 
everything MI. 

USAIC designed the ICON portal to have single 
sign-on capability with AKO; this means that us- 
ers can jump from the ICON portal into AKO and 
back again. After signing in to either portal, you 
will have access to both portals. This design will 
provide users a seamless online experience be- 
tween all of the AKO options, mail capabilities, and 
a direct access to ICON applications. Our goal is 
not to duplicate AKO, but to complement its capa- 
bilities with ICON features tailored specifically for 
MI professionals. 





Commander, U.S. Army Intelligence Center and Fort Huachuca 









ICON will look and feel like AKO but 
users may completely customize it 
to make the system user-friendly and 
ultimately to provide MI users with a 
better overall experience. The portal 
desktop will consist of smaller win- 
§, dows of information called “chan- 
3 nels,” each having a specific topic of 
information. On the portal, users’ in- 
dividual access levels will determine 
which channels will be available to 
them; users will also be able to 
choose among the channels and 
where they want them on their com- 
puters’ desktops. 


ICON will divide users into roles 
based on their duty status and loca- 
tions. Examples of role titles include 
“Anonymous Guest,” “USAIC Perma- 
nent Party,” and “Registered Guest.” Most MI users out- 
side USAIC will log in as Registered Guest users—this 
will allow them to access most of the portal information 
and to conduct collaboration with other MI professionals. 
The portal will determine the privileges and level of ac- 
cess to information for each user based on his or her 
login-role. 


ICON’s initial implementation will be on the Nonclassi- 
fied Internet Protocol Router Network (NIPRNET). Like 
every other new system's first deployment, the first ver- 
sion will not yet have all the desired features users are 
expecting. Our long-range plan for this portal is to add 
new features incrementally based on user feedback. This 
will help the MI Corps to improve the portal continually 
for both internal USAIC and MI worldwide community 
business processes. In the future, we will provide the 
same capability on Secure Internet Protocol Router Net- 
work (SIPRNET) (tied to AKO-S) for sensitive or classi- 
fied discussions and collaboration. 


The Digital Training Office (DTO) is the USAIC execu- 
tive agent for initial implementation and maintenance of 
the ICON portal. We are seeking your ideas for ICON 


(see CG's Forum, continued on page 4) 




















Military Intelligence 


























CSM Forum 


by Command Sergeant Major Lawrence J. Haubrich 


U.S. Army Military Intelligence Corps 





This past March, we had to post- 
pone our Worldwide Command 
Sergeants Major/Sergeants Ma- 
jor (CSM/SGM) Military Intelli- 
gence (MI) Conference. However, 
we still selected the 2003 CSM 
Doug Russell Awardee, Sergeant 
(SGT) Andrew C. Rapp—a coun- 
terintelligence (Cl) special agent 
assigned to 3d Special Forces 
Group (Airborne)—as the Third 
Annual Doug Russell Award re- 
cipient. The Army’s top Special 
Forces leaders as well as repre- 
sentatives from the military intel- 
ligence community attended the Fi 
ceremony on 7 March 2003 at I 
Headquarters, U.S. Army Special 
Operations Command, Fort 
Bragg, North Carolina. CSM (Re- 
tired) Sterling McCormick, our 
Honorary MI Corps CSM, presented SGT Rapp with 
the Knowlton Award during the ceremony. CSM (R) 
McCormick said, 


K x 
x x 
K + 
al 


SGT Rapp is the perfect example of the type of 
soldier for whom the award committee was 
looking....To win, it takes a soldier who distin- 
guishes himself within the Military Intelligence 
community but it also takes a soidier who has 
demonstrated professionalism in his or her mili- 
tary occupational specialty. 


Again, congratulations to SGT Rapp, the 2003 CSM 
Doug Russell Award recipient. 


As we continue to fight the Global War on Terror- 
ism (“GWOT”) in Afghanistan and Iraq, our opera- 
tions tempo (OPTEMPO) does not appear to be slow- 
ing down. ! ask you all to try to find the time to think 
about next year’s CSM/SGM conference. Please 
bring to the table those lessons learned from your 
formations involved with “GWOT.” Your lessons 
learned will assist the schoolhouse in developing a 
better-trained intelligence professional. Again, if there 
are any briefings, issues, or speaking presentations 
you would like for next year’s conference, please E- 
mail me at lawrence.j.haubrich @us.army.mil. Our 
conference’s success will depend on what we, the 








senior noncommisioned officers 
(NCOs) of our Military Intelligence 
Corps, want to accomplish. 


In May, we were fortunate to have 
the 12th SMA, Sergeant Major of 
, the Army Jack L. Tilley, visit Fort 

9 % Huachuca. He spoke with initial en- 
as try training (IET) students attending 
a the unmanned aerial vehicle (UAV) 
'™ operator's course, human intelligence 
& (HUMINT) collection course, and Cl 
course, as well as the NCO Acad- 
emy. SMA Tilley commented, “The 
technology our Army has is what 
separates us from the rest of the 
world,” ...and “the information Military 
Intelligence gives us saves soldiers’ 
lives on the battlefield.” SMA Tilley 
also visited the Garrison, Health 
Clinic, and the U.S. Army Network 
Enterprise Technology Command/9th 
Army Signal Command, where he expressed his appre- 
ciation for what all the soldiers do for the nation. 


SMA Tilley shared with the soldiers some of his expe- 
riences from his recent trips to Baghdad and Walter Reed 
Army Medical Center. “Since the war on terrorism be- 
gan, we have had 150 plus soldiers killed and over 300 
injured,” SMA Tilley stated. “We won't allow ourselves to 
forget what we stand for. What we stand for is to protect 
the Constitution of the United States.” He talked about 
visiting the wounded soldiers who came back from lrag— 
his strong emotions visible on his face—and he praised 
their commitment to the Army and the nation. Team 
Huachuca thanks the SMA for taking care of soldiers, 
his continuing mentorship, and for his visit to the U.S. 
Army Intelligence Center and Fort Huachuca. 


During the past few months, | visited our great MI ca- 
reer and assignment managers at MI Branch, U.S. Total 
Army Personnel Command. | also traveled to Fort Bragg, 
and visited MI soldiers assigned to the 3d and 7th Spe- 
cial Forces Groups (Airborne), 525th MI Brigade (Air- 
borne), and the 313th MI Battalion (Airborne), 82d Air- 
borne Division; these units all have soldiers who had just 
recently returned from deployments and prepared to de- 
ploy in support of the worldwide war on terrorism. In Utah, 


(see CSM'’s Forum, continued on page 4) 











July-September 2003 

















(CG's Forum, continued from page 2) 


portal channels and will consider your ideas and add 
them into our plan for future expansion of ICON. The 
point of contact is Major Tito Martinez, Director, Digi- 
tal Training Office; you may contact him via E-mail at 
erasmo.martinez@hua.army.mil and by telephone 
(520) 533-0981, or DSN 821-0981). 

In addition to developing the ICON, we have also 
published for the first time a “Commandant’s Recom- 
mended Reading List” for MI professionals. | believe 
you will find it visionary with decidedly futuristic and 


information-based orientations. The list includes 
readings for the Balkans and the Middle East as 
well as some old favorites borrowed from traditional 
military-theory reading lists. The vast majority of the 
books, however, are something quite new and differ- 
ent. They complement the tremendous changes we 
are witnessing in the way we view information and 
how it will continue to affect the future of military con- 
flict. | challenge you to work through these readings, 
as | am sure they will change the way you view our 
world, our profession of arms, and the future of our 
Branch. 


ALWAYS OUT FRONT! 





and Nicholas Negroponte 


Ronfeldt 


Being Digital by Nicholas Negroponte 


An Introduction to Islam by Frederick M. Denny 


East by David Fromkin 


On War by Kari von Clausewitz 





U.S. Army Intelligence Center Commandant’s Reading List for Mi Professionals 


The Lexus and the Olive Tree: Understanding Globalization by Thomas L. Friedman 
Unleashing the Killer App: Digital Strategies for Market Dominance by Larry Downes, Chunka Mui, 


In Athena’s Camp: Preparing for Conflict in the Information Age edited by John Arquilla and David F. 


Stray Voltage: War in the Information Age by Brigadier General (Retired) Wayne M. Hall 

The Age of Spiritual Machines: When Computers Exceed Human Intelligence by Ray Kurzweil 
War and AntiWar: Survival at the Dawn of the 21st Century by Alvin and Heidi Toffler 
Complexity: The Emerging Science at the Edge of Order and Chaos by M. Mitchell Waldrop 
The Dancing Wu Li Masters: A Overview of the New Physics by Gary Zukav 


The Social Life of Information by John Seely Brown and Paul Duguid 


Bridge on the Drina by Ivo Andric, Lovett F. Edwards (Translator) 
Yugoslavia—Death of a Nation by Laura Silber and Allen Little 


What Everyone Needs to Know About Islam by John L. Esposito 

The Islamic Threat: Myth or Reality? by John L. Esposito 

Unholy War: Terror in the Name of Islam by John L. Esposito 

A Peace to End All Peace: The Fall of the Ottoman Empire and the Creation of the Modern Middle 


The Reckoning: Iraq and the Legacy of Saddam Hussein by Sandra MacKey 


The Art of War by Sun Tzu, translated and with an introduction by Samuel B. Griffith 
The Transformation of War by Martin Van Creveld 


The New Face of War: How War Will Be Fought in the 21st Century by Bruce Berkowitz 


























(CSM's Forum, continued from page 3) 


| visited the 300th MI Brigade, attended the language 
conference, and visited the Joint Language Training Cen- 
ter. At Fort Hood, Texas, | visited the 312th MI Battalion, 
1st Cavalry Division, where many soldiers were on de- 
ployment orders to, or had just returned from, Iraq. The 
bottom line is that all of us are soldiers, we are warriors, 


all doing our parts fighting this Global War on Terrorism 
no matter where we are. We are a nation at war, so stay 
focused, embrace each other, and do not become com- 
placent. 


As always, let's take care of each other and our fami- 
lies. You train hard, you die hard; you train easy, die 
easy. Peace needs protection. 


ALWAYS OUT FRONT! 

















Military Intelligence 


o~ 

















coulfer 


Visualizing the information 
Fnavironment 


by Marc J. Romanych 
(Major, U.S. Army, Retired) 


The views expressed in this article 
are those of the author and do not 
reflect the official policy or position of 
the U.S. Army Intelligence Center, the 
Departments of the Army and 
Defense, or the U.S. Government 


Although the Army recognizes the 
existence of the information envi- 
ronment and its importance to 
armed conflict, there is little con- 
sensus as to its composition and 
character. Perhaps, because of its 
abstract nature, the information 
environment eludes definitive de- 
scription. Regrettably, this lack of 
a common view hinders our under- 
standing of this new operating en- 
vironment and its potential effects 
on military operations, especially 
during operational planning when 
the information operations (IO) staff 
is attempting to visualize the in- 
formation environment as part of 
the command's battlespace. 


This article discusses the appli- 
cation of emerging information 
theory to the problem of describ- 
ing the information environment's 
effects on military operations and 
proposes a way to apply intelligence 
preparation of the battlespace (IPB) 
to the problem of defining the in- 
formation environment. 


What is the Information 
Environment? 

Doctrine defines the “information 
environment” as “the aggregate of 
individuals, organizations, or sys- 
tems that collect, process, or dis- 
seminate information; also included 
is information itself.”' Unfortunately, 
this definition focuses on the infor- 
mation environment as a physical 
entity composed of information sys- 
tems. The very reason for the exist- 


July-September 2003 


ence of the information environment, 
information, is often a mere after- 
thought, while we completely disre- 
gard decisionmaking (the ultimate 
target of |O). The result is a defini- 
tion that neither presents a useful 
picture of the information environ- 
ment nor expresses its true nature. 


Fortunately, recent work by the 
Department of Defense (DOD) Com- 
mand and Control Research Program 
(CCRP) provides a model of the in- 
formation environment that battle 
staffs can use. CCRP’s publication, 
Understanding Information Age 
Warfare, describes the battlespace 
as having three distinct, but related, 
domains—physical, information, and 
cognitive.* Together, these domains 
represent the nature of the informa- 
tion environment and are central to 
understanding the impact of informa- 
tion on military operations.* We can 
describe the domains as shown in 
Figure 1.4 

The physical domain is the tan- 
gible world. It is the materiai part 
of the information environment that 





Physical Domain 
(The Real World) 














information Domain} command 
(A Theoretical Construct) | & Control 

















Cognitive Domain 


Decision- 
(The Human Mind) ata 


Making 


















overlaps with the physical operat- 
ing environments of land, sea, air, 
and space. This domain is where 
military maneuver and combat op- 
erations occur. It is also where the 
physical elements of information 
systems and the networks that 
connect these systems reside and 
operate.° Essential characteristics 
of the physical domain include 
those typically important to ma- 
neuver operations: geography (ter- 
rain), weather, populace, and civil 
infrastructure (to include commu- 
nications networks and media). 
These characteristics affect the 
employment of information system 
assets and the linking of informa- 
tion systems into networks. For lO, 
this is the domain in which we at- 
tack and defend information sys- 
tems. 


The information domain is where 
information exists. It is an abstract 
construct based upon theory.® The 
information domain has a dual na- 
ture, consisting of information it- 
self but also serving as the medium 


Where the information environment 
overlaps with the physical world 
information systems and networks 
Key characteristics: geography 
(terrain), weather, civil infrastructure, 
population 


Where information exists 

Dual nature - information itself and 
the medium in which we collect, 
process, and disseminate 
information 

Links physical & cognitive domains 
Significant characteristics: info 
quality, distribution, flow 


Where decisions are made 

Domain of intangibles such as morale, 
unit cohesion, level of training, 
experience, public opinion, situational 
awareness 

Key characteristics: perceptions, 
awareness, understanding 


Figure 1. Information Environment Construct. 














To conduct IO, our view of the in- 


— 


a ae saan aaa formation environment must ex- 

; tend from the physical domain 

pn a hasten map trensesienaynictieenr eng through the information domain 

into the cognitive domain. To af- 

Info Infrastructure: “Primary means of C2 fect the cognitive domain (the ulti- 

Physical =| -Telecom system—Used by military | _- .11teral damage concerns mate objective of lO), effects must 


*Media— Govt controlled, reaches 

90% of populace *Populace’s primary info source 
Demographics — >70% of populace | Populace can hinder or tie down 
concentrated in urban areas military forces 


first occur in the physical and then 
the information domains. Thus, 
staffs cannot base planning solely 
on the characteristics of friendly 
and adversary information systems 
(i.e., the physical domain); rather, 
it must include the desired higher 
order of effects in the information 
support or oppose military (information content and flow) and 
operations cognitive (decisionmaking) do- 
Key: mains."° For this reason, when con- 
Govt ~ Goverment LOCs — Lines of communication ducting IPB, it is necessary to 
Info — Information Telecom — Telecommunications : ; 

analyze and visualize all three do- 
mains and their interrelationships. 


Applying Theory— 
The Combined 


Information Overlay 

The information environment, in 
contrast to the other environments 
in which armed forces operate— 
land, sea, air, and space—is 
largely nonphysical and abstract. 
As a result, battle staffs often 
have difficulty expressing the in- 
formation environment’s character 
and effects in a manner useful to 
the commander. One possible so- 
lution is a “combined information 
overlay” (CIO). Analogous to the 
modified combined obstacle over- 
lay (MCOO) produced by the in- 
telligence staff to portray the 
battlespace’s effects on military 
operations, the CIO is a graphic 
product that depicts the informa- 
tion environment'’s effects 


The IO staff derives the CIO from 
analysis conducted during the first 
two steps of IPB: Define the 
Battlefield Environment and De- 
scribe the Battlefield’s Effects. To 
construct a CIO, first examine the 
battlespace to identify significant 
characteristics of each information 
environment domain (Step 1 of 








*info flow — follows ground LOCs 


information | -Media— content is anticoalition 
propaganda 


-Info flow easily interdicted 


*Local media has influence on 
populace perceptions 





Divide populace support for 
goverment regime 


-Can influence populace to 
Cognitive 




















Figure 2. Example Info Environment Effects. 


by which we collect, process, and 
disseminate information (i.e., the 
functions of information systems). 
Conceptually, the information do- 
main fits between the physical and 
cognitive domains or, perhaps 
more accurately, at the intersec- 
tion of the two domains.’ As such, 
the information domain links the 
reality of the physical domain to 
the human consciousness of the 
cognitive domain. Crucial charac- 
teristics of the information domain 
include those essential to informa- 
tion management and command 
and control (C2): information qual- 
ity (completeness, accuracy, time- 
liness, relevance, and consistency), 
distribution (range, sharing, and 
continuity), and interaction (ex- 
change or flow of information).® 
These characteristics affect infor- 
mation content and the functions 
of information systems. In this do- 
main, |O seeks to affect the con- 
tent and flow of information. 


This domain includes intangibles 
such as morale, unit cohesion, level 
of training, experience, public opin- 
ion, and situational awareness.° Most 
importantly, the cognitive domain is 
where we make decisions. There- 
fore, vital characteristics of this do- 
main are those that affect individual 
and collective (organizational) 
decisionmaking: perceptions (atti- 
tudes), awareness (opinions, beliefs, 
and values), and understanding 
(knowledge). In the cognitive domain, 
10 seeks to affect the interpretation 
and use of information to make deci- 
sions. 


The Relationship 


of the Domains 

Together, the three domains com- 
prise the information environment. As 
previously noted, the physical domain 
is where information systems and 
networks reside and operate. The 
employment of these systems and 
networks in the physical domain in- 
fluences the collection, processing, 
and dissemination of information in 
the information domain, which in turn 
affects human decisionmaking in the 
cognitive domain. As a result, effects 
in one domain generate consequent 
effects in the other domains. 


The cognitive domain is also 
abstract. However, unlike the infor- 
mation domain, which is purely 
theoretical, the cognitive domain 
exists in the minds of human be- 
ings and in the collective conscious- 
ness of groups and organizations. 


Military Intelligence 

















IPB)."' Such an analysis is com- 
parable to the G2’s evaluating the 
battlefield in terms of OAKOC (ob- 
stacles, avenues of approach, key 
terrain, observation and fields of 
fire, and concealment and cover). 
The difference is that this analy- 
sis attempts to “map” the 
battlefield’s information environ- 
ment based upon the generic char- 
acteristics of the information 
environment model: 


Q) Physical Domain: What aspects 
of the geography (terrain), 
weather, populace, and the civil 
infrastructure impact on the em- 
ployment of information systems 
and the linking of information 
systems into networks? 

YQ) Information Domain: What infor- 
mation and its quality, flow, and 
distribution affect information 
system functions (i.e., collec- 
tion, processing, and dissemi- 
nation of information)? 

Q) Cognitive Domain: What popu- 
lace and third-party perceptions, 
awareness, and understanding 
influence decisionmaking? 

The next step is to analyze the 
identified significant characteris- 
tics in detail to determine the ef- 
fects on military operations (Step 
2 of IPB) (see Figure 2). Then the 
staff combines the domain's indi- 
vidual characteristics and effects 
to develop an aggregate view of the 
information environment. They plot 
the result on a map of the area of 
operations to depict where and how 
the information environment's ef- 
fects will influence military opera- 
tions. 


Keep in mind that the CIO is a 
guide, not a rigid template. Because 
the information environment is not 
uniform in its composition and char- 
acter, every CIO will be unique. Sig- 
nificant characteristics can vary 
widely depending on the assigned 
operational area, the type of military 
operation, and mission. Therefore, 
few analyzed information environ- 
ments will incorporate all elements 


July-September 2003 


of the template. However, whatever 

form the ClO takes, the product must 

show the aggregate effects of all 
three domains on military operations 

(see Figure 3). Some considerations 

for developing ClOs include— 

Q) The ClO is an overview of the 
information environment. The 
degree of detail displayed var- 
ies depending on the type of 
operation, capabilities of the 
friendly and threat forces, and 
the relative significance of the 
information environment to the 
mission. Typically, analysis of 
the information environment re- 
sults in a series of templates— 
based on the time available, 
perhaps one for each significant 
characteristic—that support the 
conclusions of the CIO and pro- 
vide the details needed to plan 
the iO. 

Q) When plotting significant char- 
acteristics of the information 
environment, it is possible that 
the battlespace will contain dis- 
tinct “sub-information” environ- 
ments. These environments 
are geographic areas in which 
the significant characteristics 
are notably different from those 
in adjacent areas. |O staffs may 
have to analyze subenviron- 





| Mountain Region “a 
| -Populace: Anti-govt regime tribal 
| groups 


ments separately to determine 
their composition and charac- 
ter. 

Q) Inclusion of an entire informa- 
tion infrastructure on the ClO 
may be impractical; in which 
case, it should at least comprise 
key information nodes. 

Conclusion 

As an operating environment for 
military forces, the information en- 
vironment is difficult to visualize. It 
is complex, abstract, and ever 
changing. The CCRP’s theoretical 
work and its application as dis- 
cussed in this article only scratches 
the surface of what is necessary 
for battle staffs to characterize the 
information environment accurately. 

As our understanding of the nature 

of the information environment in- 

creases, changes in doctrine and 
tactics, techniques, and procedures 

(TTPs) are sure to follow. However, 

to start this process of change, we 

must first develop a common un- 
derstanding of the information envi- 
ronment. 


ee 
— 





Endnotes 


1. Joint Publication 1-02, Depart- 
ment of Defense Dictionary of 





| -information infrastructure: Limited 
telecom & media, face-to-face comm 
| with leaders is key 
-info Flow: Restricted by terrain 




















Key: 
Comm — Communication 


Figure 3. Example of a CIO. 








Military and Associated Terms 
(Washington, D.C.: U.S. Government 
Printing Office, 12 April 2001), page 
203 

2. Alberts, David S., Gartska, John J., 
Hayes, Richard E., Signori, David A., 
Understanding Information Age 
Warfare (Washington D.C.: DOD 
Command and Control Research 
Program, August 2001.) This book 
examines the information environment 
in a way that is very useful to IO. 
Anyone seeking to understand the 
relationship between information and 
information superiority is encouraged 
to read this work 


3. Ibid, page 10 


4. For another, albeit similar model of 
the information environment, see 
Toward a Functional Model of 
Information Warfare by L. Scott 
Johnson (Studies in Intelligence, 
Volume 1, Number 1, 1997). Although 
somewhat dated as well as technol- 
ogy-centric, it complements Under- 


standing Information Age Warfare 
well. 


5. Ibid. page 12. 


6. There are two generally accepted 
theories of information. First— 
information as message (or meaning)— 
regards information as an immaterial 
message or signal that contains 
meaningful (or at least recognizable) 
content that a sender can transmit to a 
receiver. Second—information as 
medium—relates information to the 
message but also views information as 
a system or conduit that transmits a 
message from sender to receiver. See 
Arquilla, John, and Ronfeldt, David, In 
Athena’s Camp: Preparing for 
Conflict in the Information Age 
(Santa Monica, CA: RAND, 1997), 
pages 145-152 


7. Sparling, Bryan, Information 
Theory as a Foundation for Military 
Operations in the 21st Century 
(Fort Leavenworth, KS: School of 
Advanced Military Studies, U.S. Army 


Command and General Staff College, AY 
01-02, 14 May 2002). 


8. Alberts, et al, page 78. 
9. Ibid, page 13. 
10. Johnson, ID at 4. 


11. Significant characteristics are those 
aspects of the battlespace that may 
influence military operations. 


Marc Romanych (Major, U.S. Army, Re- 
tired) works as a contractor with the U.S 
Army 1st Information Operations Com- 
mand (Land). Since 1998, he has de- 
ployed with /O field support teams to 
Bosnia and Kosovo, and numerous joint 
and Army warfighter exercises. Mr 
Romanych teaches courses on informa- 
tion operations and information superi- 
ority for the American Military University 
He holds degrees in Chemistry, Geol- 
ogy, History, and International Relations 
Readers may contact him via E-mail at 
marc.romanych@us.army.mil 








a 
Order Processing 
Code 6489 


g 


Please send me 


The total cost of my order is $ 


Address 


MIPB Subscription 


___ subscription(s) for years (no more than 2) for Military Intelligence 
Professional Bulletin (MIPB). $21.00 (Domestic, APO, and FPO); $29.40 (Foreign) per year. You can 
E-mail us at misty.simpkin@us.army.mil or ernesto.alonso.bolanos@us.army.mil 


All prices include regular domestic postage and handling and are 
subject to change. | understand this charge is not refundabie 


Pi 





(Company or Personal Name) 





(Street Address) 





(Additional Address/Attention Line) 





(City, State, ZIP Code) 





confirm Receipt of payment. 
Mail to: 





(E-mail Address and Telephone Number) 
Please include your E-mail address to 


Expiration Date 


m ment: 


C] Check payable to the Superintendent of Documents 


a GPO Deposit Account No (TTTTTITH 
C] MasterCard [visa Lhiscover 


COETT TTT TT TTT TTT TTT) 


Subscription Order Form 


ES) 





Authorization Signature 


ATTN: ATZS-FDT-M, U.S. Army intelligence Center and F ort Huachuca, 550 Cibeque Street, F ort Huachuca, AZ 85613-7017 











Military Intelligence 





raten~ 


<P 


Information Operations in Support of 
Demonstrations and Shows of Force 


by Lieutenant Colonel 
Arthur N. Tulak 


A version of this article by then Ma- 
jor Tulak previously appeared in the 
Center for Army Lessons Learned 
(CALL) Training Techniques, 2nd 
Quarter, Fiscal Year 2003 (TQ2-03) 
at nttp://call.army.mil/products 
trngqtr/tq2-99/showforc.htm. Re- 


nted with 


n nermiceion 
Miilied VEIITHSSIVTi 


The U.S. Army conducts shows of 
force and demonstration operations 
to influence key decisionmakers 
and audiences to support U.S. ob- 
jectives. Information operations 
(10) leverage the effectiveness of 
these operations across the pillars 
of 1O by informing targeted audi- 
ences of friendly force capabilities 
and intent. Shows of force and dem- 
onstrations are military operations 
conducted by combat forces to pro- 
tect U.S. and allied interests, give 
warning and pause to hostile groups, 
persuade neutrals, and encourage 
friendly groups.’ Shows of force and 
demonstrations are military activities 
that support preventive diplomacy,” 
one of the three diplomatic-led ac- 
tivities of peace operations in which 
military activities play a supporting 
role. 


The North Atlantic Treaty Organi- 
zation (NATO)-led Stabilization 
Force (SFOR) conducting peace op- 
erations in the former Republic of Yu- 
goslavia (FRY) conducted a show of 
force 25 March to 17 April 1998 to 
demonstrate SFOR'’s rapid rein- 
forcement capability. Military activi- 
ties appropriate for shows of force 
and demonstrations in support of 
peacekeeping and peace enforce- 
ment include multinational training 
exercises demonstrating coalition 
military capabilities, interoperability, 
unity of effort, and resolve.‘ 


The show of force exercise, dubbed 
Dynamic Response (DR) ‘98, com- 


July-September 2003 


menced with an amphibious landing 
at Ploce on the Croatian coastline 
on 26 March 1998.° The culmination 
exercise of DR '98 was a combined 
arms live-fire exercise (CALFEX) 
demonstration called Dynamic Strike 
'98, held at the Glamoc firing range 
in Multinational Division-Southwest 
(MND-SW). Both the show of force 
and its concluding demonstration 
were intended to show to the people 
of FRY and their military and politi- 
cal decisionmakers the SFOR’s abil- 
ity to insert additional combat forces 
into the theater rapidly to reinforce 
SFOR. 


As SFOR reduced its on-the- 
ground force structure in Bosnia- 
Herzegovina, the requirement for a 
reliable rapid-response capability 
took on increased importance. 
SFOR needed to retain the capabil- 
ity of responding to a renewal of hos- 
tilities or increased tensions in order 
to maintain the peace imposed upon 
the former warring factions (FWFs) 
during the initial peace-enforcement 
operations conducted in Operation 
JOINT ENDEAVOR. The creation of 
a European-based Strategic Reac- 
tion Force (SRF) for the Bosnia arena 
allowed SFOR to continue on-the- 
ground force reductions without com- 
promising its credibility to enforce the 
military provisions of the Dayton 
Peace Accord through lethal com- 
bat power. This force, while not based 
in theater, had the mission of serv- 
ing as both a deterrent to renewing 
hostilities and a viable reinforcement 
option to support one or more SFOR 
sectors in a period of heightened ten- 
sion. The purpose of the show of 
force and demonstration was both to 
demonstrate visibly that despite re- 
ductions of on-the-ground forces, 
SFOR still had the capability to re- 
spond to escalation and remained 
committed to enforcing the peace, 
and to train the SRF to execute tasks 


associated with rapidly reinforcing a 
deployed peace-operations force. 





lO can enhance the 

impact of informational, 
diplomatic, economic, 

and military efforts, and 
forestall or eliminate the 
need to employ forces in 

a combat or crisis 

situation 


lO provide the U.S. Government 
with the capability to influence the 
perceptions and decisionmaking of 
the FWFs while improving the de- 
terrent value of power-projection 
options.® Political concerns domi- 
nate shows of force and demon- 
Strations, as the objective is to 
dissuade adversaries from interfer- 
ing with the enforcement of inter- 
national law, United Nations Security 
Council Resolutions (UNSCRs), and 
internationally recognized peace 
accords.’ At the operational level, |O 
employed in conjunction with shows 
of force and demonstrations sup- 
ports deterrence of the resumption 
of hostilities and reassures allies and 
the international community that the 
peace-operations force remains Ca- 
pable of implementing the peace 
agreement. In peace-enforcement 
operations, maintaining security in- 
volves demonstrations of inherent 
military capability and prepared- 
ness, and the overt presence of un- 
committed mobile combat power in 
the form of a reserve.® 


SFOR leveraged the deterrent ef- 
fects of DR ‘98 by incorporating |O 
with the lethal combat power com- 
ponents into a fluid exercise that was 
extremely successful in showing its 








resolve in maintaining unbroken en- 
forcement of the Dayton Peace Ac- 
cord. Used in this manner, |O can 
enhance the impact of informational, 
diplomatic, economic, and military 
efforts, and forestall or eliminate the 
need to employ forces in a combat 
or crisis situation. Demonstrations 
and shows of force, supported by 
effective information operations, can 
deter adversaries from interfering 
with the peace-operations force or its 
objectives or from resuming the hos- 
tilities with the other FWFs."° The 
objective is to demonstrate resolve 
and commitment to a peaceful reso- 
lution while underlying the readiness 
and ability to use force if required." 


An effective show of force or dem- 
onstration must be demonstrably 
mission-capable and sustain- 
able.'? That is, the execution of the 
show of force or demonstration 
must convincingly demonstrate to 
the targeted audience that the 
peace-operations force has the nec- 
essary combat power; command, 
control, and communications (C3); 
intelligence; international liaison; and 
ready and responsive forces required 
to use military force to enforce com- 
pliance. The SFOR SRF in DR ‘98 
included military forces from four 
NATO countries (Italy, The Nether- 
lands, Turkey, and the United States) 
and two NATO Partnership for Peace 
(PFP) nations (Poland and Roma- 
nia). The SFOR planned for an SRF 
of more than 5,000 soldiers com- 
prised of a wide range of military 
capabilities to include light, airborne, 
and mechanized infantry, as well as 
armor, artillery, and both fixed- and 
rotary-wing attack aircraft.'* Peace- 
operations doctrine notes that ar- 
mored forces and attack helicopter 
assets can play major roles in de- 
terrence or function as a mobile re- 
serve." 

The DR ‘98 show of force took the 
form of a training exercise in which 
the SRF practiced combat opera- 
tions such as amphibious assault; 
air assault; fire and maneuver; and 
such peacekeeping tasks as oper- 


10 


ating checkpoints, patrolling, and 
inspecting weapons storage sites. 
During the exercise, the participat- 
ing forces became familiar with the 
area of operations and command 
and control procedures among the 
participating nations of the SRF and 
of SFOR.** The culmination point of 
the exercise was the CALFEX dem- 
onstration conducted in front of an 
audience of major political and mili- 
tary leaders of the FWFs. The mes- 
sage that SFOR wanted to send was 
that although they would lessen the 
military force structure in the future, 
they still had the capability and 
means to deploy a potent military 
force in the event of heightened ten- 
sions. 

The Public Affairs (PA) component 
of |O was the primary vehicle to in- 
form the regional and international 
media covering the events. The 
Deputy Commander Supreme Allied 
Commander-Europe (SACEUR) 
aboard the USS Wasp in the Adriatic 
at the commencement of the exer- 
cise himself held press conferences 
at the culminating CALFEX demon- 
stration at the Glamoc firing range. 
The SFOR Coalition Press Informa- 
tion Center (CPIC), essentially a 
Joint and Multinational Information 
Bureau, provided a steady stream 
of press releases before, during, and 
after the exercise. CPIC press kits 
on the exercise ensured that the re- 
gional and international media knew 
the SACEUR’s intent. It is essen- 
tial that the commander's intent for 
the military operation be clearly com- 
municated and correctly interpreted 
by potential adversaries.'® As open 
sources to foreign countries and the 
United States, the Army can use PA 
channels to disseminate interna- 
tional information."” 


Dynamic Strike, the culminating 
CALFEX demonstration of Exercise 
Dynamic Response ‘98, featured a 
force-projection scenario of a multi- 
national SRF encountering a hostile 
force about to attack a village situ- 
ated on the Barbara Range at 
Glamoc. During the demonstration, 


the SRF responded to the hostile 
force with organic weapons, sup- 
ported by 81-millimeter (mm) mortar 
fires; Cobra gunships from the 26th 
Marine Expeditionary Unit (MEU), 
and Apaches from the Task Force 
Eagle 4th Aviation Brigade fired on 
“adversary” armored personnel car- 
riers. U.S. and Italian Marines con- 
ducted amphibious assault and 
helicopter air assault operations onto 
the coast. A reinforcing multinational 
ground force, composed of mecha- 
nized and armored forces, linked up 
with the amphibious and air assault 
forces. During the demonstration, the 
SRF maintained an impressive rate 
and volume of fire from 120-mm tank 
guns, automatic weapons and can- 
non fire, TOW and MILAN" missiles, 
and mortar and artillery fire. In the 
last wave of the onslaught, attack 
helicopters eliminated remaining tar- 
gets, while NATO air assets, includ- 
ing Harriers from the USS Wasp, 
Jaguars, and F-16s, were ready to 
intervene and deliver 2,000-pound 
bombs on target if necessary." 
General Wesley Clark (SGACEUR) 
declared at a press conference fol- 
lowing the live-fire demonstration, 


Maintaining a strategic reserve 
force outside the region that is 
ready to respond quickly to any 
crisis, and help restore stability, 
is important to SFOR's ability to 
maintain peace throughout the 
region.” 


He further added, 


An action is worth a thousand 

words. By demonstrating its ca- 

pabilities, SFOR nations have 
made a very powerful judgement, 
peace will be kept, the Dayton 

Peace Agreement implemented, 

and Bosnia and Herzegovina will 

become a normal country in Eu- 
rope." 

The opening amphibious landing 
and air assault operations of Exer- 
cise Dynamic Response attracted 
large press attention from local, re- 
gional, and international media.” 


Military Intelligence 








oa 22 


That interest was cultivated with a 
well-organized and rehearsed “Me- 
dia Day” on 24 March 1998 at the 
commencement of the Exercise.?* 
That media interest subsequently 
continued throughout the Exercise 
by ensuring media awareness of and 
access to exercise events and 
through the use of press releases 
given to the press and posted on the 
Internet.24 The SFOR CPIC, the Su- 
preme Headquarters Allied Powers 
Europe (SHAPE) Public Information 
Office, the U.S. Forces Press Ser- 
vice, and the United States European 
Command (EUCOM) all provided 
press releases documenting the 
preparation and execution of the 
show of force and its culminating fire- 
power demonstration. 


The show of force exercise with the 
culminating CALFEX demonstration 
and the attendant local, national, and 
international media coverage had a 
profound impact on the FWF politi- 
cal and military leadership. Accord- 
ing to the unit after-action reviews 
(AARs) and interviews conducted by 
the SFOR Public Information Office 
with prominent FWF military and 
political leaders, those FWF leaders 
in attendance, and those watching 
the event through the media, received 
the intended message loud and 
clear. 


ee 
an 





Endnotes 


1. FM 100-20, Military Operations in 
Low-Intensity Conflict (Washington 
D.C.: Headquarters, Department of the 
Army, 5 December 1990), page 1-11. 


2. FM 100-23, Peace Operations 
(Washington, D.C.: Headquarters, 
Department of the Army, 30 December 
1994), page 2 

3. Ibid., pages 2, 111. 


4. FM 100-7, Decisive Force: The Army 
in Theater Operations (Washington, 
D.C.: Headquarters, Department of the 
Army, 31 May 1995), page 8-9. 


5. SFOR Coalition Press Information 
Center, Press Release “Exercise Dynamic 
Response 98—Images From Deployment,” 
Sarajevo, 26 March 1998, downloaded 
from http://www.nato.int/sfor/dyn-resp/ 
p980326n.htm. 


6. FM 100-6, Information Operations 
(Washington, D.C.: Headquarters, 
Department of the Army, 27 August 1996), 
page 2-2. 


7. FM 100-20, page 5-4. 
8. FM 100-23, page 17. 


9. Office of the Chairman of the Joint 
Chiefs of Staff, Joint Publication 3-13, 
Joint Doctrine for Information 
Operations, Preliminary Coordination 
Draft, 28 January 1998, pages |-2 and |-3. 


10. FM 100-23, page 17. 
11. Ibid., page 2. 
12. FM 100-20, page 5-4. 


13. Coalition Press Information Center, 
Sarajevo, 23 March 1998, Press Release 
‘Operation Joint Guard, Exercise Dynamic 
Response 98,” downloaded from http:// 
www.nato.int/sfor/dyn-resp/dyn- 
resp.htm. 


14. FM 100-23, page 40. 


15. Kozaryn, Linda D., American Forces 
Press Service, Department of Defense, 
Press Release 98167, “NATO Strategic 
Reserve to Train in Bosnia,” American 
Forces Press Service downloaded from 
http://www.dtic.mil/afps/news/ 
9803243.htm. 


16. Air Command and Staff College 
Research Project 95-053, “Planning and 
Executing Conflict Termination,” Chapter 3, 
Case Study Analysis (Maxwell Air Force 
Base, AL: ACSC, 1995), page 9. 


17. Joint Publication 3-53, Joint 
Doctrine for Psychological Opera- 
tions (Washington, D.C.: Chairman of the 
Joint Chiefs of Staff, 10 July 1996), page 
Vi 


18. The expansion of TOW is tube- 
launched, optically tracked, wire-guided 
and MILAN is Missile d'Infanterie Leger 
Antichar. 


19. Arnold, 2LT David, “Dynamic Strike 98 
Opens Fire,” Coalition Press Information 
Center, Sarajevo, 3 April 1998, down- 
loaded from http://www.nato.int/sfor/dyn- 
resp/p980403a.htm. 


20. Supreme Headquarters Allied Powers 
Europe, News Release 98-09-02, “INITIAL 


EXERCISE PRESS RELEASE Exercise 
Dynamic Response 98,” 9 February 1998, 
downloaded from: http:// 
www.shape.nato.int/Press/980902.htm. 


21. Arnold, ID at 19. 


22. Coalition Press Information Center, 
Sarajevo, 25 March 1998, Press Release 
“Strategic Reserve Force Arrives For 
Exercise Dynamic Response 98,” 
downloaded from http://www.nato.int/ 
sfor/dyn-resp/p980325a.htm. 


23. Coalition Press Information Center, 
Sarajevo, 24 March 1998, Press Release 
“Operation Joint Guard, Exercise Dynamic 
Response 98—Media Day,” downloaded 
from http://www.nato.int/sfor/dyn-resp/ 
p980324a.htm. 


24. SFOR CPIC press releases included 
instructions to journalists on coordination 
of air and ground transportation (provided 
by SFOR) to the exercise events and 
offered assistance to journalists wanting 
to cover the scheduled events. The SFOR 
CPIC press kit issued in advance of the 
exercise laid out the entire exercise plans 
for journalists to plan their coverage. 


Lieutenant Colonel Arthur Tulak is currently 
serving at the J39 Information Operations 
Cell at U.S. Army Pacific Command 
(PACOM) Headquarters at Camp Smith, 
Hawaii. His previous assignment was as 
the Division Information Operations Officer 
for the 82d Airborne Division in Bagram, 
Afghanistan, as part of a 1st Information 
Operations (Land) Command Field Sup- 
port Team supporting Operation ENDUR- 
ING FREEDOM. LTC Tulak served in the 
1O Cells of the 1st Infantry Division and 1st 
Cavalry Division in Operations JOINT 
GUARD and JOINT FORGE in Bosnia- 
Herzegovina. His Infantry assignments in- 
clude tours with the 87th, 8th, 27th, and 
29th Infantry Regiments. LTC Tulak earned 
a Bachelor of Science degree in Business 
Administration with an emphasis in Mar- 
keting from the University of Southern Cali- 
fornia at Los Angeles; a Master of Science 
degree in Defense and Strategic Studies 
from Southwest Missouri State University, 
Springfield Missouri; and a Master of Mili- 
tary Arts and Sciences from the U.S. Army 
Command and General Staff College in 
General Studies with an emphasis on In- 
formation Operations in 1999. Readers 
may contact the author telephonically at 
DSN 305-477-3110. 








Have You Moved Recently? 


Please notify M/PB of your address change. You may send an E-mail to mipb@hua.army.mil with a subject: 
“Address change.” You can also call (520) 538-1009 or DSN 879-1009 or write to U.S. Army Intelligence 
Center and Fort Huachuca, ATTN: ATZS-FDT-B, 550 Cibeque Street, Fort Huachuca, AZ 85613-7017. 








July-September 2003 


11 








Measures of Effectiveness in the 
Information Environment 


by Lieutenant Colonel 
David C. Grohoski, 
Steven M. Seybert (Major, 
U.S. Army, Retired), and 
Marc J. Romanych (Major, 
U.S. Army, Retired) 


Assessing the effectiveness of an 
information operation is one of the 
greatest challenges facing a staff. 
Despite the evolution of information 
operations (lO) doctrine and the re- 
finement of supporting tactics, tech- 
niques, and procedures (TTPs), the 
Army has not solved the problem of 
1O assessment methodology. The 
question remains: lacking physical 
evidence, how can we quantify the 
intangible attributes of the informa- 
tion environment to assess the ef- 
fectiveness of |O? 


This article addresses the mat- 
ter of quantifying the effectiveness 
of 1O. Then it presents a method- 
ology for developing measures of 
effectiveness (MOEs) to ascertain 
10 effects on friendly and enemy 
forces. 


Statement of the Problem 
Why is assessing the impact of 
1O so difficult? First, the information 
environment is an abstract con- 
struct, and lO operates within that 
construct. According to Joint Pub- 
lication 1-02, Department of De- 
fense Dictionary of Military and 
Associated Terms, the “information 
environment” is the aggregate of in- 
dividuals, organizations, or systems 
that collect, process, or disseminate 
information. Also included in the in- 
formation environment is information 
itself. Thus, the information environ- 
ment is a combination of physical 
assets (e.g., information systems) 
and nonphysical concepts (e.g., in- 
formation, information-based pro- 
cesses, and human decisionmaking 
processes). IO attacks and protects 
the physical assets of information 


12 


systems to affect the nonphysical 
aspects of the information environ- 
ment. Transitioning from visible ef- 
fects resulting from destruction of 
tangible assets such as command 
posts (CPs) and radar systems to 
abstract effects such as disrupted 
information flow and degraded 
decisionmaking is a challenging 
task. 


Second, not all of |O’s capabilities 
reside in the physical world. While 
physical destruction is tangible 
enough, many capabilities include 
nonphysical aspects—operations 
security (OPSEC), electronic warfare 
(EW), military deception, psycho- 
logical operations (PSYOPs), etc. 
For |O purposes, the effects ulti- 
mately produced by these elements 
should occur in the intangible do- 
main of ideas, perceptions, and atti- 
tudes. Capturing data or information 
to measure such nonphysical effects 
is difficult and often time-consuming, 
requiring a depth of analysis that 
seems impossible during high-tempo 
operations. 


Third, an integrated |O campaign 
achieves a complex, tiered hierarchy 


of effects (see Figure 1). The attack 
on or protection of physical assets 
(information systems) yields what 
one can call “first-order effects,” 
such as the destruction, degrada- 
tion, and disruption of enemy signal 
nodes and CPs, or perhaps the pre- 
sentation of false observables for 
collection by enemy intelligence sys- 
tems. We cirect these first-order 
activities against the enemy's infor- 
mation system to achieve second- 
order effects on the enemy's 
information and information-based 
processes, which in turn, seek a 
third-order effect on the enemy 
commander's decisionmaking (i.e., 
the ultimate target of 10). Defen- 
sively, first-order effects may be the 
protection of friendly force informa- 
tion system assets; second-order 
effects may be the maintenance of 
situational awareness or an uninter- 
rupted information flow; and third- 
order effects may be the preserva- 
tion of effective decisionmaking. 
Each level of effects will likely yield 
corresponding enemy and friendly re- 
actions, resulting in a complex, tiered 
set of causes and effects, which re- 
quire interpretation to determine the 








1st 2nd 3rd 
Order Effects Order Effects Orcer Effects 
Effects resuiiing Effects on — Effects on 
from actions against | Seek to information & Seek to commander's 
information system | achieve information flow achieve decisionmaking 





assets 




















Key 
REC — Radivelectronic combat 


| ESTA — Recsanatocense, Mieliganes, euvelianse, endtugtenyielies 




















Figure 1. |O Effects Hierarchy. 


Military Intelligence 


=e 











a 


overall impact of the |O. This maze 
of causal relationships requires 
something more than traditional 
battle damage assessment (BDA). 


Assessment and the 
Hierarchy of Effects 

Measurement and analysis of 
effects resulting from the attack 
of enemy information systems and 
protection of friendly information sys- 
tems make an IO campaign assess- 
ment possible. However, to do this, 
it is necessary to understand the hi- 
erarchy of effects resulting from lO 
activities (e.g., first-, second-, and 
third-order effects). 


First-order effects result from 
those actions directed against the 
enemy's information system and 
those measures taken to protect 
the friendly information system. 
Generally, one deduces first-order 
effects by using information derived 
from unit reporting and BDA.’ This 
assessment determines if planned 
lO tasks have occurred, and the 
direct result of these actions and 
activities. Generation of second- 
and third-order effects are by the 
aggregate of actions directed 
against enemy and friendly infor- 
mation systems. These effects are 
subtle and less quantifiable than 
first-order effects. At these levels, 
assessment seeks to determine if 
the aggregate of executed IO tasks 
have achieved the desired result: 


() What were the effects on the 
enemy and friendly information 
systems (second-order effects)? 

() Were the enemy and friendly 
commanders affected (third- 
order effects), and if so, how and 
to what extent? 


Determination of second- and third- 
order effects is usually through in- 
ductive analysis of intelligence 
reporting and assessments. 


Establishing Cause 
and Effect 


The only way to assess cause-and- 
effect linkages is to acknowledge— 


July-September 2003 


Q) Military conflict consists of in- 
teractions among humans and 
technologies. 


) Linkage of physical assets of a 
military force and the intangible 
aspects of military operations, 
such as morale, leadership, will, 
and cohesion. 


Thus, attacking physical assets— 
CPs, target acquisition systems, 
intelligence collection and process- 
ing systems, and communications 
systems—will adversely impact a 
military force’s ability to make and 
act upon decisions and consequently 
will have a detrimental affect on those 
intangibles that provide the military 
force with the ability to conduct op- 
erations. 


Correlation exists when the value 
of an action (e.g., number of occur- 
rences, degree of the effect, etc.) 
increases (or decreases) while the 
value of the effect also increases (or 
decreases). For example, if as the 
number of PSYOP leaflets dropped 
on enemy formations increases so 
do the number of enemy soldiers 
surrendering, or if as the number of 
jamming attacks against a com- 
mand and control (C2) net increases, 
the traffic on that net decreases, then 
a probable correlation exists. This 
deductive reasoning forms the basis 
of determining first-order effects. 


However, the apparent relation- 
ship between action (cause) and 
effects may be coincidental be- 
cause the occurrence of an effect 
is accidental, or perhaps caused 
by the correlation of multiple actions 
executed to achieve the effect. For 
example, if friendly forces are suc- 
cessfully engaging enemy forma- 
tions with fires and maneuver at the 
same time PSYOP activities are 
urging enemy soldiers to surrender, 
then correlating an increase in sur- 
rendering soldiers to PSYOP activi- 
ties alone may not be possible. 
Furthermore, because an IO will of- 
ten employ multiple elements to 
engage the enemy’s information 
system, the cumulative effect of |O 


support to friendly combat actions 
may make the impact of individual 
10 activities indistinguishable. Since 
there will rarely be enough time to 
rule out definitively coincidental re- 
lationships, the only possible anti- 
dote is an in-depth knowledge of the 
enemy and information environment 
that facilitates the development of an 
informed estimate through inductive 
reasoning. 


What Are Measures of 
Effectiveness? 


Unfortunately, the emerging joint 
definition of “MOEs” (e.g., tools used 
to measure results achieved in the 
overall mission and execution of as- 
signed tasks’) provides little clarity 
as to what MOEs and how we can 
MOEs or them to assess IO. There- 
fore, for this discussion, we propose 
the following definition: measures of 
effectiveness are standards of refer- 
ence used as the basis of compari- 
son to evaluate the success or 
progress of an operation. 


MOEs are a means to determine 
second and third-order effects by 
establishing a cause-and-effect 
linkage between the usually ob- 
servable and quantifiable first-order 
effects and the abstract and sub- 
jective second- and third-order ef- 
fects. MOEs do not constitute the 
assessment itself but are an evalu- 
ation means to determine if the 
individual lO tasks are achieving the 
10 objectives and whether accom- 
plishment of the 1O objectives is 
fulfilling the concept of 1O support 
(see Figure 2).° 


Developing MOEs 


The staff develops MOEs as part 
of the planning process to deter- 
mine the effects of both offensive 
and defensive lO. To be meaning- 
ful, MOEs must link friendly and 
enemy actions and activities 
(cause) to enemy and friendly ca- 
pabilities to make and act upon 
decisions (effect).* Therefore, MOE 
development begins with the lO 
mission statement and objectives. 


13 








































































































— Provide with, or change, plan 
if 
10 Concept of || Measures of Assessment of 
Support — Effectiveness = information 
(For 10 Concept of Support) - 
| | Operation 
l 
[ r > | 
mae | Measures of 1] 
1O Objectives —— Effectiveness | Assessment of 
| (For each 1O Objective) | 10 Objectives 
i | | 
| | i 
Tasks to || «Unit Reporting || 
Elements and _ - Battle Damage | Assessment of 
Units | | Assessment | Tasks 

































































Figure 2. Contribution of MOE to Assessment. 


lf the staff does not properly craft 
the |1O mission statement and objec- 
tives, then developing corresponding 
MOEs will be difficult, if not impos- 
sible. Therefore, the 10 mission 
statement should focus on specific 
aspects of the operation and not be 
sO general that it merely identifies 
standard doctrinal requirements for 
10. An example of a simplified corps- 
level |O mission statement is: 


On order, |! Corps conducts in- 
formation operations in the area 
of operations in order to disrupt 
Northland 1st Army C2 and influ- 
ence local leaders and populace, 
allowing the destruction of 
Northland 1st Army armed forces 


We develop MOEs to assess the 
desired effect of each IO objective. 
Ideally, each objective has a clearly 
defined, attainable effect, otherwise 
it is not possible to determine if, or 
when, we achieved that effect, and 
hence, whether the |O met the ob- 
jective. ° Examples of objectives for 
the previous IO concept statement 
are— 


) Disrupt Northland 1st Army’s 
Capability to integrate air defense 
early warning and acquisition 
systems. 

J Neutralize Northland reconnais- 
sance assets’ ability to detect the 
\| Corps’ main offensive effort. 


14 


Y Disrupt the Northland 1st Army 
commander's synchronization 
of corps- and army-level opera- 
tions. 

J Influence local civilian leaders 
and population groups to not in- 
terfere with Il Corps’ forces and 
operations. 

As previously noted, MOEs for 
second-order effects seek to 
determine if the aggregate of IO ac- 
tions and activities are accomplish- 
ing the lO objectives. If possible, the 
MOE should be observable to aid in- 
telligence collection, quantifiable to 
increase objectivity, precise to 
ensure accuracy, and correlated to 
the progress of the operation to 
attain timeliness. While it is pos- 
sible for an !O objective to have 
multiple MOEs, intelligence collec- 
tion and analysis assets are limited. 
Possible second-order MOEs could 
be— 


J Ninety percent or more of early 
warning sites and air defense 
sector control centers sup- 
pressed. 

“J Noli Corps deep attacks effec- 
tively engaged by radar-guided 
surface-to-air missiles. 

J No Il Corps high-value assets 
attacked by surface-to-surface 
fires, air strikes, or special pur- 
pose forces’ direct action. 

Y) No synchronized fires and ma- 
neuver above division level. 


O) Noreserve divisions committed 
against Il Corps’ main effort. 

Q) No blockage of || Corps’ main 
supply routes by the civilian 
populace. 

4) No instances of local leaders 
inciting the populace to interfere 
with Il Corps’ operations. 


MOEs for third-order effects seek 
to determine if we affected the en- 
emy and friendly commanders as 
planned. These MOEs should de- 
termine if the decisionmaker has 
responded as predicted. Thus, in 
all likelihood, these MOEs will be 
subjective. A possible MOE for 
third-order effects may be: No 
counterattack by the Northland 1st 
Army against the II Corps’ main ef- 
fort.’ Figure 3 provides an example 
of an 1O concept, objective, and 
supporting MOEs. 


Assessment—Putting 
it All Together 


MOEs are but one part of the as- 
sessment process. Traditional BDA 
and other intelligence analyses, as 
well as friendly unit reporting, are still 
essential to assessing the informa- 
tion operation's effectiveness. These 
sources provide the information on 
quantifiable effects that we can use 
as the basis for estimates of whether 
we are achieving the IO objectives 
and concept of |O support. 


Once the staff defines the MOEs, 
they then develop a mechanism to 
obtain the information needed to de- 
termine the three orders of effects. 
The IO staff must determine the— 


) Assessments required. 

Y) Specific information needed to 
make the assessments possible. 

W) Agencies and assets that will 
provide the information. 


This assessment plan then contrib- 
utes to the command's intelligence 
collection plan and friendly forces’ 
information requirements. 


Timely and accurate reporting of 
information is essential to assess- 
ing effectiveness of the 10. Subordi- 


Military Intelligence 











10 Objective | ist Order MOE (BDA) | 


Disrupt ¢ Destruction of corps 
Northland 1st & army headquarters | 
Army 
commander's | + Destroyed or 
synchronization | captured 

of corps- and reconnaissance 
army-level teams 

operations 


¢ Decreased corps- 
level and above C2 
communications 
traffic 


* Increased division C2 | 
| net communications 
traffic 





2nd OrderMOE | 3rd Order MOE 

No counterattack by 

| the Northland 1st 
Army against || 

| Corps’ main effort 


No synchronized 
fires and 
maneuver above 
division level 


No reserve 
divisions 

committed against | 
li Corps’ main 

effort 








Figure 3. Example |O Objective and MOE. 


nate units report much of this infor- 
mation to their higher headquarters. 
Maneuver units, tactical PSYOPs 
teams, and civil affairs tactical sup- 
port teams, as well as tactical hu- 
man intelligence (HUMINT) teams 
(which traditionally include counter- 
intelligence personnel), and other 
intelligence collection assets all pro- 
vide information with which to gauge 
10 success. Additionally, on-going 
intelligence analysis, including analy- 
sis of media and other open sources, 
supports assessing whether an lO 
campaign is achieving its objectives 
and if the 1O concept of support is suc- 
cessful. 


To receive information, the IO staff 
must actively monitor the operational 
situation and aggressively pursue 
information through unit reports and 
debriefings, |O0 working group 
(1OWG) meetings, and other venues. 
Commanders’ battle update brief- 
ings, conference calls, and other 
meetings also facilitate monitoring 
10 execution by providing forums 
from which to receive information for 
subsequent analysis. Some other 
actions the IO staff can do include— 


Q) Submit requests for information 
(RFls) based upon the assess- 
ment plan. 

) Develop !O input to the 
commander's critical informa- 
tion requirements (CCIRs). 

4) Coordinate with the deep opera- 
tions coordination cell (DOCC) 


July-September 2003 


and targeting board for BDA re- 
porting. 
Q) Review assessments at each 
lIOWG meeting. 
Y) Monitor G2 and G3 incident da- 
tabases and analyze trends. 
Ultimately, an assessment is suc- 
cessful when it is possible to decide 
when to proceed with the plan, when 
to reengage a target, when to ex- 
ecute a branch of the plan, or when 
to execute a sequel. MOEs fit into 
this effort by facilitating the organi- 
zation and assessment of the infor- 
mation needed to support these 
decisions. 


Conclusion 

Developing MOEs to assess the 
effectiveness of the information op- 
eration is a difficult task. In many 
respects, MOE creation is much 
more art than science. However, 
through development of proper 
MOEs and an effective assessment 
plan as discussed in this article, we 
can link the science involved in 
achieving and assessing first-order 
effects to the more subjective as- 
sessments of accomplishing sec- 
ond- and third-order effects. Thus, 
the staff can make an informed esti- 
mate of the effects resulting from ex- 
ecution of a command's IO tasks 
and establish the progress of the in- 
formation operation campaign. 

Clearly more work is necessary. 
However, as IO practitioners continue 
to work with MOEs and other as- 


sessment methodologies, they will 
continue to refine and validate suc- 
cessful techniques and procedures. 


es 





Endnotes 


1. Unit reporting and BDA address the 
success or failure of planned |O tasks to 
attack enemy and defend friendly 
information system assets. This informa- 
tion helps determine which enemy and 
friendly assets our actions affected and 
yields an estimate of the immediate 
results. The purpose of this first-order 
assessment is to determine if current |O 
tasks and the level of effort applied to the 
1O are adequate. 


2. Joint Publication 3-60, Joint 
Doctrine for Targeting, 17 January 
2002, page GL-8. 


3. We may develop MOEs to measure the 
accomplishment of individual |O tasks. 
Doing so is largely dependent upon the 
importance of the task, as well as the 
availability of resources and time to plan 
and conduct an assessment to that level 
of detail. 


4. Murray, William S., “A Will to Measure,” 
Parameters, Autumn 2001, page 135. 


5. A well-crafted 1|O objective specifies an 
effect, an object of the effect, and a 
purpose for the effect. Normally, 
offensive |O objectives are in terms of 
causing an adversary to do or not do 
something. Defensive IO objectives are in 
terms of protecting and defending friendly 
force’s information and information 
systems. 


6. It is important to note that doctrine does 
not provide specific effects for |O. Typical 
effects used in the field are deny, 
destroy, degrade, disrupt, deceive, 
exploit, and influence. Some of these 
effects are taken from targeting and 
therefore have specific definitions, while 
we use other effects simply because 
they seem appropriate to 1O. Having well- 
defined effects will certainly assist the 
planning and development of |O objectives 
and MOEs. Another noteworthy aspect of 
10 doctrine is the lack of terms for 
describing defensive |O effects. 


7. This MOE assumes that the enemy 
commander's predicted decision (as 
determined by the G2’s intelligence 
preparation of the battlespace), was 
either to block or counterattack the || 
Corps’ ground offensive. 


Lieutenant Colonel (Promotable) David C. 
Grohoski is currently the Deputy Director 
of Operations for the U.S. Army 1st Infor- 
mation Operations Command (Land). A 
career Infantry officer, his previous assign- 
ments include Battalion Senior Observer/ 


15 





Controller at the Joint Readiness Training 
Center (JRTC), Exchange Officer with the 
British Army, Executive Officer of the 3d 
Infantry Regiment (The Old Guard), as well 
as assignments in light infantry and air- 
borne ranger units. He was a Distinguished 
Military Graduate of Michigan State Uni- 
versity with a Bachelor of Arts degree in 
Social Science and earned a Master of Pub- 
lic Administration degree from the Univer- 
sity of Oklahoma 


Major Steven Seybert (U.S. Army, Retired) 
has provided contract support for more 


than six years to the U.S. Army 1st |O Com- 
mand (Land) in planning and conducting 
10. He has served with IO field support 
teams on deployments to various levels of 
military command from joint task force to 
division. He performed as an IO targeting 
officer while deployed to Operation JOINT 
GUARDIAN and as an /O planner during 
Operation IRAQI FREEDOM. He is a gradu- 
ate of the U.S. Military Academy at West 
Point, New York, and the Command and 
General Staff Course. Readers may con- 
tact him via E-mail at steve.seybert@ 
us.army.mil 


Major Marc Romanych (U.S. Army, Re- 
tired) is a former Air Defense Artillery 
Officer. He works as a contractor with 
the U.S. Army 1st 1|O Command (Land). 
Since 1998, he has deployed with IO field 
support teams to Bosnia-Herzegovina, 
Kosovo, and numerous joint and Army 
warfighter exercises. Mr. Romanych 
teaches two courses on /O for American 
Military University. He holds degrees in 
Chemistry, Geology, History, and Inter- 
national Relations. Readers may con- 
tact him via E-mail at marc.romanych@ 





us.army.mil. 





Joint C41 Staff and Operations Course 


What is in your future? Are you or will you soon be serving at a corps- or theater-level G2 or G6 staff in support of a joint 
task force (JTF) or working with a JTF Joint Communications Control Center (JCCC) executing requirements associ- 
ated with an information management plan? Or are you looking at an assignment to one of the theater signal com- 
mands or to an Army Service Component Command headquarters as an active duty or Reserve Component officer or 
senior noncommissioned officer (NCO) and finding yourself involved in exercise planning conferences or exercises 
such as Lucky Sentinel, Ulchi Focus Lens, Combined Endeavor, or Grecian Firebolt? 


If you are concerned with your present situation, consider the following: Maybe you are now an action officer or senior 
NCO supporting signals intelligence, space operations, or theater missile defense command and control initiatives. 
Or are you a U.S. Army Training and Doctrine Command (TRADOC) Systems Manager (TSM) or Project Manager action 
officer or Department of Defense (DOD) civilian who deals with a myriad of interoperability issues or key performance 
parameters in the command, control, communications computers, intelligence, surveillance, and reconnaissance 
(C4ISR) transformation arena? 


If any of these situations describe you, then the Joint Command, Control, Communications, Computers, and Intelli- 
gence (C4l) Staff and Operations Course (JC4ISOC) stands ready to support your joint C4! educational needs. Spon- 
sored by the Joint Staff/J6, the JC4ISOC is four weeks long and taught seven times during the fiscal year (FY). First 
established in January 1978 by the Deputy Secretary of Defense as a joint C3 systems course at the Armed Forces Staff 
College, it is now one of the resident courses under the Joint Command, Control, and Information Warfare School 
(JCIWS), Joint Forces Staff College (JFSC), in Norfolk, Virginia. The mission of JCIWS is to educate and train company- 
and intermediate-level military staff officers, senior NCOs, and DOD civilian equivalents in the concepts, applications, 
and procedures associated with C4! and information operations (10) in a joint and multinational environment. 

To support the warfighter’s needs in a network-centric, capabilities-based force, the JC4ISOC curriculum takes a 
generalist approach. The program meets the school’s objectives and supports the college’s mission by emphasizing 
a broad understanding of the joint C4! environment, C2 process, and operation, planning, and management of current 
joint C4I systems. It provides quality C4! instruction for the joint community on topics such as Joint Vision 2020, joint 
interoperability, battlespace systems, the Global Information Grid, information assurance, and JTF C41 planning. 


Reviews from former students indicate the course’s value to their past, current, and upcoming assignments. An Air 
Force colonel said, “/ would have been 300 percent more effective in the job [I had] if | had attended that JC4ISOC 
course.....the information was that beneficial, especially that part about the C4/ contacts and points of contact? 

Annually, JC4ISOC issues messages to major Army commands (MACOMs) and joint agencies of all services an- 
nouncing FY course dates and prerequisites. We disseminate a separate message a few weeks before the start of 
each class. The course accommodates a maximum of 25 students. The next four iterations of the course will be: 

CQ Class 03-7 4-29 August 2003 

Q} Class 04-1 27 October - 21 November 2003 
Q Class 04-2 12 January - 6 February 2004 

OQ Class 04-3 1 - 26 March 2004 

Students must possess a Top Secret clearance with sensitive compartmented information (SCI) access and be 
cleared for SCI indoctrination before arrival. Students’ commands must fund their travel, per diem, and billeting, which 
includes a five-day field trip to the Washington, D.C., area for “up close and personal” experiences with joint agencies 
and organizations. Administrative information is available through the “Welcome Aboard” and “General Information” 
sections of the JFSC web site at https:/Awww.jfsc.ndu.edu/ (click on the JCIWS link). 


The JC4ISOC quota control point of contact is Lieutenant Commander Katherine Mayer; you may contact her via E- 
mail at mayerk@jfsc.ndu.edu or jciws@jfsc.ndu.edu and telephonically at (757) 443-6320 or DSN 646-6320; the Army 


faculty representative is Lieutenant Colonel Reynold Palaganas at palaganasr@jfsc.ndu.edu and by telephone at 
(757) 443-6328/6331 or DSN 646-6331. 











16 


Military Intelligence 


oe 





-e 





Courtesy of NGIC. 


Reserve Support to lO: The 3401st 
MI Detachment (USAR] at NGIC 


by Sherwin H. Terry, Jr. 


The 3431st Military Intelligence De- 
tachment (MID), U.S. Army Reserve 
(USAR), is one of 16 Army Reserve 
MIDs WARTRACEd to the National 
Ground Intelligence Center (NGIC) 
and supporting the Global War on 
Terrorism and Operation IRAQI 
FREEDOM. The 3431st MID is dif- 
ferent from the usual MID, however, 
because it is a 45-person produc- 
tion group, rather than the classic 
9-person detachment. Through this 
enlarged structure, the unit is pro- 
viding support to NGIC and the U.S. 
Army Intelligence and Security Com- 
mand (INSCOM) in the realm of in- 
telligence support to information 
operations (IO) and computer net- 
work operations (CNO). 


MIDs Augment 
NGIC Support 


NGIC is the Army’s intelligence 
production activity located in 
Charlottesville, Virginia. The Cenier 
produces all-source ground-forces 
intelligence for a long list of custom- 


ers that range from military research 
and development organizations, 
weapons developers, and senior 
Department of Defense decision- 
makers to the operational forces in 
the field. Assisting in this daunting 
task are 16 MIDs WARTRACEd to 
the Center. The many talents they 
bring expand the specialized exper- 
tise and skills available among the 
almost 800 civilian and military em- 
ployees of the Center. For example, 
some of these MIDs boast members 
with expertise in chemical and 
nuclear weapons, small arms, radar 
systems, or skills in assessing for- 
eign national military infrastructures. 
During the last 18 months, the Army 
called these MIDs to active duty to 
add their talents to NGIC’s expertise 
in support of the Global War on Ter- 
rorism and Operation IRAQI FREE- 
DOM. 


Structure of the 
3431st MID 


Among the 16 MIDs supporting 
NGIC is the 3431st MID, a produc- 





The front of the National Ground Intelligence Center building. 


July-September 2003 


tion group that differs from other 
MIDs in that it actually comprises 
five integral 9-person detachments. 
In August 2001, the Department of 
the Army (DA) authorized a reorga- 
nization of the 3431st MID to an ex- 
panded composition resulting from 
earlier direction by Lieutenant Gen- 
eral (LTG) Thomas Plewes, then 
Chief of the USAR. Learning that the 
mission of the 3431st is to assist 
NGIC's intelligence production in re- 
sponse to customers’ 10 and CNO 
requirements, LTG Plewes seized on 
the opportunity to reinforce that sup- 
port with an enhanced Reserve unit 
tailored especially for the task. 


In September 20071, in the midst of 
beginning to reorganize and to recruit 
the necessary personnel to outfit its 
new structure, the 3431st MID be- 
came embroiled in the Global War 
on Terrorism resulting from the ter- 
rorist attacks of September 11. 
Twenty-seven strong, the unit began 
a tour of active duty in October 2001 
for one year. Unit members provided 
personnel for the |O mission at the 
1st Information Operations Com- 
mand (Land) (formerly called the 
Land Information Warfare Activity, or 
LIWA) at Fort Belvoir, Virginia, and 
for IO intelligence production support 
to meet NGIC customers’ needs. 
During their period of active duty, 
those members of the 3431st MID 
assigned to the 1st |O Command pre- 
pared assessments for lO Field Sup- 
port Teams deployed with the U.S. 
Forces in Afghanistan, and those at 
NGIC published intelligence assess- 
ments addressing the command, 
control, and communications (C3) 
capabilities of transnational terrorist 
groups. 

The period of unit activation all but 
halted the retailoring of the 3431st 
MID. Under the leadership of the Pro- 
duction Group Commander, Colonel 
Leslie Purser, that effort was reinvigo- 


17 








Courtesy of Robert J. Bills, INSCOM Photographer 








NGIC employee Thomas Nelson, on a detail supporting Operation ENDURING 
FREEDOM, and Sergeant Christopher Newsome, 3431st MID, preparing an 
10 assessment at ist |O Command (Land). 


rated. The Army is actively recruit- 
ing new members, particularly indi- 
viduals with specific specialized skill 
sets in computer forensics; com- 
puter networking; network security; 
physics, math, and basic sciences; 
foreign area studies; and above all, 
an intelligence background. The per- 
sonnel resourcing structure for each 
of the five detachments lists three 
commissioned officers (military oc- 
cupational specialty [MOS] 35D, All- 
Source Intelligence Officer), a senior 
warrant officer (MOS 350B, All- 
Source Intelligence Technician), and 
five enlisted soldiers (MOS 96B, In- 
telligence Analyst) ranging in grade 
from E5 to E8. Due to the delayed 
restructuring, the production group 
has until September 2004 to reach 
full strength. 


The Army tailored constitution of 
each of the five detachments of the 
3431st to present a unique approach 
to the IO intelligence problem and 
how it will help NGIC to support cus- 
tomers’ needs: 


“J One detachment will examine 
the telecommunications sys- 
tems of potential adversaries’ 
ground forces and assess the 
capability of those networks to 
support computer network at- 


18 


tacks that they might direct 
against the U.S. Army. 
Another detachment is sup- 
porting NGIC’s intelligence re- 
search and reporting about the 
technologies underpinning for- 
eign |O and projecting where 
those technologies will lead in 
the next 5 to 15 years. 

A third detachment is looking at 
adversaries’ tactics, techniques, 
and procedures to assess a 
nation’s or transnational group's 
intent to use CNO for insurgency 
or terrorism against the Army. 
The fourth detachment, in addi- 
tion to performing the functions 
of the Group headquarters, can 
provide a flexible production 
surge capability for the other 
detachments in the event that 
NGIC experiences an overload 
of IO tasking. 

The fifth detachment has a 
unique role in approaching the 
10 problem: it is projecting NGIC 
production support to other 
INSCOM subcommands that 
will require IO intelligence pro- 
duction. Members of this de- 
tachment are currently drilling 
at Fort Belvoir, where they are 
augmenting the 1st |O Com- 
mand (Land). 


10 Products from the 
3431st MID 

The 3431st MID has produced a 
number of !O-related intelligence 
documents supporting the efforts 
of NGIC and the Army. The publica- 
tions span the gamut from the short, 
directed assessments on particular 
aspects of C3 or CNO, like those 
described above, to comprehensive 
1O country studies addressing the 
entirety of IO. The U.S. Army Training 
and Doctrine Command (TRADOC) 
has used one particular series of 
country studies to develop scenarios 
for |O segments of wargames for the 
Army of the future. Members of the 
3431st MID also made a major con- 
tribution to the 1O section of a study 
assessing the threat to the Army’s 
Future Combat System (FCS). Due 
to these two efforts alone, the 3431st 
MID has made a significant impact 
in helping to design the Army of the 
future. More recently, their publica- 
tions in support of Operation IRAQI 
FREEDOM include assessments on 
Iraqi weapons and technologies and 
the urban defense prospects of the 
Iraqi forces. 


Conclusion 

As the 3431st MID Production 
Group approaches full strength, it will 
continue to expand its formidable 
presence in the |O and CNO intelli- 
gence production capabilities of the 
National Ground Intelligence Center. 
The MID will permit the Center to 
address the needs of its customers 
better, with a broader and more tal- 
ented base than would otherwise be 
available. ee 





* 


Sherwin Terry (Lieutenant Colonel, U.S 
Army Reserve, Retired) is currently an elec- 
tronics engineer with the National Ground 
Intelligence Center. He holds a Bachelor 
of Arts degree in Mathematics and a Bach- 
elor of Science degree in Electrical Engi- 
neering from Bucknell University and a 
Master of Business Administration degree 
from James Madison University. He is a 
graduate of the Command and General 
Staff College and has served as a CGSC 
Instructor. Among his duties at NGIC, he 
is the NGIC point of contact for the 3431st 
MID 


Military Intelligence 


Intelligence Support to Information Operations: 


staff Chaplains 





by Major Norman Emery 


- 


A version of this article previously ap- 
peared in the Center for Army Lessons 
Learned (CALL) Training Techniques 
2nd Quarter, Fiscal Year 2003 (TQ2- 
03),’ Reprinted with permission 


IPB supports IO by identifying the 1O 
capabilities and vuinerabilities of 
friendly, adversary, and other key 
groups. !t portrays adversary and 
other key group leaders/decision- 
makers, command and control (C2) 
systems, and decisionmaking 
processes. 


—FM 3-13, Information Operations: 
Doctrine, Tactics, Techniques, 
and Procedures 


Throughout the past ten years, U.S. 
peace and combat operations in 
Bosnia-Herzegovina, Africa, Haiti, 
Kosovo, and Afghanistan have in- 
volved influencing the population to 
achieve specific military objectives. 
Those “influence operations,” which 
were part of an information opera- 
tions (10) campaign, required a thor- 
ough understanding of a country or 
region's religious and social culture. 
The planning process often overlooks 
or underdevelops this understanding. 
The staff chaplain, an oft available 
but underutilized asset, can be a 
crucial person in the analysis of cul- 
ture in information operations. The 
Chaplain Corps recognizes, and is 
responding to, this need. 


Importance of 
Understanding Culture 


In military planning and operations, 
culture is a broad term that encom- 
passes a country’s history of its 
peoples, religions, and hierarchal 
structure, religious and social cus- 
toms and observances, and defines 
social relationships and structure. A 
command's failure to recognize or 
respect a country’s culture can un- 
dermine or impede the command's 


July-September 2003 


mission, or otherwise affect its abil- 
ity to influence the information envi- 
ronment through lO. Below are some 
examples of how knowledge of the 
culture impacts IO planning in— 


Q Coordinating with shuras, 
mullahs, and other trusted mem- 
bers in rural and small urban 
communities to distribute hu- 
manitarian assistance to the lo- 
cal populace. 

Q) Recognizing and acknowledging 
important holidays to gain the 
populace’s respect. 

Q) Preventing a faux pas in obser- 
vation of customs. 

Q) Creating a nodal analysis of re- 
ligious leaders who possess few 
degrees of separation from key 
leaders. 

4) Understanding tribal relations, 
concepts, and traditions, which 
often can differ from those of 
U.S. forces’ own experiences 
and conceptions. 


Integrating Staff Chaplains 

Ideally, a unit would deploy with 
a well-developed culture database. 
With or without such a tool, the 
optimal time to integrate the 
analysis of culture is during the 
mission analysis (MA) of the mili- 
tary decisionmaking process 
(MDMP). This responsibility gen- 
erally falls upon the G2/J2 Plans 
section, the analysis and control 
element (ACE), or both. Often the 
initial cultural analysis is very shal- 
low due to collection and analysis 
prioritization; therefore, it requires 
emphasis by the IO section. Since 
sections can be small and limited 
in time and knowledge resources, 
ad hoc members are necessary to 
develop the cultural analysis re- 
quirement. Although having foreign 
area officers (FAOs) may be ideal, 
their actual inclusion on staffs is 


rare and may be entirely absent 
during the critical initial planning 
phases. It is here that a staff chap- 
lain can contribute significantly. 
During the mission analysis, the 
10 section develops the IO intelli- 
gence preparation of the battlespace 
(IPB). Essential elements of |O IPB 
include— 


Q) In-depth analysis of religion. 

Q) Important religious and cultural 
dates and observances. 

Q) Religious and social structure. 


Q) Leaders and their probable influ- 
ence. 


Identifying religious leaders can 
help the G2/J2 develop a link 
analysis. Additionally, religious 
leaders are often very influential 
with the local population, which 
can support accomplishing |O ob- 
jectives. The staff chaplain involve- 
ment in the MA should go beyond 
reporting of “Blue” assets (e.g., 
how many chaplains and resources 
are necessary for operations at 
subordinate level). The staff chap- 
lain should also conduct his own 
form of IPB; his knowledge is es- 
sential in the development of the 
1O campaign plan. Several leaders 
learned the value of knowing and 
understanding local religious prac- 
tices in Bosnia, and the lack of 
knowledge at times hampered 
U.S. efforts. 


Chaplain (Colonel) Albert Smith, 
Third Army and Combined/Joint 
Forces Land Component Com- 
mand (C/JFLCC) Chaplain, sup- 
ports the concept of using staff 
chaplains for this purpose but em- 
phasizes that commanders and 
their staffs must understand that 
staff chaplains have a different role 
than ground chaplains (those as- 
signed to combat and support 
units). While commanders can 


19 











Photograph courtesy of Nella Hobson, Army Chaplain School 


expect staff chaplains to provide 
their contribution to 1O IPB, re- 
search databases, and possibly 
assist in culture analysis, these 
chaplains cannot be part of an in- 
telligence collection plan. Gener- 
ally, chaplains of any faith can gain 
access to local religious leaders 
since religion and a profession of 
faith are the common bonds. As an 
unwritten professional courtesy, 
that trust cannot be diminished 
due to perceptions that chaplains 
are intelligence gatherers! If that 
bond of trust is ever compromised, 
it is not just distrust of that par- 
ticular chaplain. Therefore, we 
must follow these unwritten rules 
and protocols 


Challenges and the World 
Religion Program 

Chaplains must have proper de- 
velopment to succeed in this sug- 
gested role. There still exist some 
challenges. Foremost is the fact 
that the majority of U.S. chaplains 
are Christian or Jewish, while the 
dominant religions in the current 
and foreseeable majority of opera- 
tional areas are Muslim (or other 


faiths). The Chaplain Corps recog- 
nizes this fact, and has expanded 
its training through its World Reli- 
gion Program. World Religion in- 
structors research, develop 
databases, and teach the com- 
plexities of various regional reli- 
gious beliefs and social cultures. 
Instructors are at four locations: 
Defense Language Institute For- 
eign Language Center (DLIFLC) in 
Monterey, California; the Chaplain 
Advanced Course at Fort Jackson, 
South Carolina; the psychological 
operations (PSYOPs) school at the 
John Fitzgerald Kennedy (JFK) 
Special Warfare Center at Fort 
Bragg, North Carolina; and the 
Command and General Staff Col- 
lege at Fort Leavenworth, Kansas. 


The other significant challenge is 
ensuring the staff chaplain has cur- 
rent, accurate, and detailed informa- 
tion once deployed. The Chaplain 
School created a “reach” back ca- 
pability (a centralized information 
support system) to provide support 
not only to staff chaplains but also 
to planning staffs in general. A well- 
researched World Religions website 
(wrc.lingnet.org) provides the first 


The Army Chaplain School set up a special classroom in 2002 with 
seventeen Force XXIi Battle Command Brigade and Below systems 
to train chaplains and chaplain assistants in tactical religious support 
using digital technology. 


20 


link to critical cultural information. 
According to Chaplain (Major) Larry 
Closter, former World Religion Chap- 
lain at DLIFLC: 


General comments on culture 
are not very helpful to the pro- 
cess, since each religion has 
its own nuances. A good ex- 
ample is the Kurds. They have 
a great variety in their structure 
because of isolation due to the 
mountainous region they live in.? 


A command needs a chaplain on the 
staff who knows the system and 
structure. Chaplain Closter states 
that commanders frequently ask 
questions about indigenous reli- 
gions, history of religions, burial ritu- 
als, and major holidays that may 
clog main supply routes (e.g., pil- 
grimages). If scouts or human intel- 
ligence (HUMINT) collectors are 
unable to obtain this information, the 
website is there to support chap- 
lains with a database containing 
tiered layers of information. For ex- 
ample, it explains Islam in general, 
then the website goes into more 
details such as the Sunni and Shiite 
sects, etc. The site is also organized 
by region and then narrows to local 
levels (major areas), addressing the 
known power structure and how they 
practice religion. The challenge is 
building the database for areas 
where few after-action reports 
(AARs) exist. Chaplain Closter says 
the State Department has an excel- 
lent database and there is discus- 
sion concerning how to combine the 
two databases. 


The staff chaplain’s preparation 
to be a valuable member of the |O 
planning team consists of one or 
more of the following resources: 


Q) That chaplain’s own faith and 
training. 

) The World Religions website 
(wrc.lingnet.org). The website is 
the most referenced capability. 
Part of the database is books 
developed to inform language 
students, which chaplains also 


Military Intelligence 


— 


Be 


find useful. The books currently 
cover North Africa, Asia, East 
Europe, and South America, 
largely due to the efforts of 
Chaplain (Lieutenant Colonel) 
Ken Sampson. The goal is to 
eventually have a “religious map” 
of the entire world. 


Y World Religion instructors. All 
instructors have earned at 
least a master’s degree in 
world religion or an aspect of 
world religion, and planners 
may contact them directly for 
their expertise. 

) The Chaplain Basic and Ad- 
vanced Courses and World Re- 
ligion course. Instruction at 
these courses integrates chap- 
lains just out of the seminary 
who generally have little knowl- 
edge of other world religions 
apart from their own; most 
chaplains are open to learning 
about or understanding other 
religions. 

Staff Chaplains Are 

Planning Multipliers 


In summary, staff chaplains are 
a valuable but underutilized re- 


source in developing the analysis 
of an adversary’s culture for the 
MDMP. Many IO missions can be- 
gin before combat operations, and 
failure to understand the complexi- 
ties of culture can negatively im- 
pact those operations. At that point 
it is too late. Commanders and 
operations staff officers should 
understand that staff chaplains can 
be a valuable multiplier in the total 
planning process by assisting in 
developing the reverse IPB for MA, 
the 10 Working Group (IOWG), and 
targeting boards, and should insist 
on their participation. Their prod- 
ucts are critical for intelligence 
support to 1O, which requires an 
in-depth understanding of culture 
for operations involving humani- 
tarian assistance, civil affairs, 
PSYOPs, deception, and inte- 
grated IO. The doctrinal organiza- 
tion of the IOWG should change 
to reflect this greater role. The 
Chaplain Corps is making great 
strides to prepare its chaplains 
better for this role. 


i 
ray 
= 





| would like to thank Lieutentant Colo- 
nel Scott Kiefer, 1st |O Command, for 
his generous time and comments lead- 
ing to this article 

Endnote 


1. The CALL TQ2-03 is available on the 
Internet at http://call.army.mil/Products/ 
TRNGQTR/TQ2-03/emery/emery.htm. 


2. Personal conversation with Chaplain 
(Major) Larry Closter, 7 June 2002. 


Major Norman Emery is a Functional 
Area 30 (Information Operations) officer 
and was a member of the Center for 
Army Lessons Learned (CALL) Opera- 
tion ENDURING FREEDOM Combined 
Arms Assessment Team (CAAT) sent to 
Kuwait and Afghanistan in March 2002. 
His past assignments include Battalion 
S2, 1-187 Infantry, and company com- 
mands and Battalion S3 at the Presidio 
of Monterey. He is currently enrolled in 
the Special Operations and Low-inten- 
sity Conflict/IO (SOLIC/IO) Program at 
the Naval Postgraduate School. You may 
contact MAJ Emery via E-mail at 
nemery@nps.navy.mil and telephoni- 
cally at (831) 372-0954. 














forcedesign 
kaps 


sites will be active soon. 
secure 

password) 
weather 





Force Design Division 
Knowledge and Program Services 


Updated FDIC Websites on the Way at Fort Huachuca 


The Futures Development Integration Center at the U.S. Army Intelligence Center is breathing new life 
into its elements’ web sites by bringing all the sites under a centralized umbrella to maintain continuity and 
to improve the sites’ appearance. Each site has a unique address in the form of https:// 
www.futures.hua.army.mil/<site>, http://<site>.futures.hua.army.mil, or http://secure.futures.hua.army.mil. 


FDIC Sites 

www Central launching point nsto New Systems Training Office 

abio Army Broadcast Intelligence Office tencap Tactical Exploitation of National Capabilities 
bebi Battle Command Battle Lab-Huachuca  tsmasas TSM All-Source Analysis System 

car Concepts, Architectures & Requirements tsmijstars Joint Surveillance Target Attack Radar System 
dcd Directorate of Combat Developments tsmprophet TRADOC System Manager (TSM), Prophet 


tsmuav 
weather 


secure site with doctrine and web enabler sites (uses Army Knowledge On-Line login/ 


(on the https://secure.futures.hua.army.mil site) 


TSM Unmanned Aerial Vehicle 
Army Weather Support Team 


Current Secure FDIC Sites (password controlled software) https://secure.futures.hua.army.mil. These 











July-September 2003 


21 











LIKE ADDING WINGS TO A TIGER— 
CHINESE INFORMATION WAR THEORY AND PRACTICE 


by Timothy L. Thomas 


During the past five years, numer- 
ous Chinese military and civilian 
scholars published significant works 
on information war (IW) and related 
issues. An analysis of their works 
yields several interesting results. 


W First, the Chinese feel compelled 
to develop a specific Chinese 
IW theory, in accordance with 
the Chinese culture, economic 
and military situation, perceived 
threat, and their military philoso- 
phy and terminology. 

) Second, Chinese military art 
strongly influences Chinese IW 
theory. China is quickly integrat- 
ing IW theory into its People’s 
War concept. it is also consid- 
ering the development of an in- 
dependent “net force” branch 
of service (to supplement the 
Navy, Army, and Air Force), and 
applying the 36 stratagems of 
war to IW methods. 

W Third, Chinese military science 
dictates division of IW into 
subelements very different from 
those studied in the United 
States. These include the forms, 
nature, features, distinctions, 
principles, types, and levels of 
IW. These subdivisions are simi- 
lar to Russia's |W methodology. 

While a theory of Chinese IW is 
developing, turning theory into 
practice has proven more difficult 
since China is still developing the 
civilian and military infrastructure 
to support its philosophy.’ This ar- 
ticle will highlight crucial aspects of 
the specific Chinese approach to IW. 

It will begin by discussing how the 


22 


information age has affected China's 
attitude toward warfare and the spe- 
cific Chinese historical factors af- 
fecting this interpretation. Finally, 
it will discuss Chinese IW defini- 
tions, and investigate the training 
courses and organizational struc- 
tures needed to teach IW. 


IW with Chinese 


Characteristics 

The major change of the informa- 
tion age was a reassessment of how 
to evaluate and conduct warfare. 
China realized that although it can- 
not currently threaten other countries 
aS a superpower might, it can do 
something with its |W force, such as 
theoretically threaten U.S. financial 
stability. The characteristics of infor- 
mation (global reach, speed-of-light 
transmission, nonlinear effects, inex- 
haustibility, multiple access, etc.) 
control the material and energy of 
warfare in a way that nuclear weap- 
ons cannot.* IW attempts to beat 
the enemy in terms of promptness, 
accuracy, and sustainability.’ It thus 
makes complete sense to put a sig- 
nificant effort into developing an in- 
formation-based capability in both 
the civilian and military sense. 
From the Chinese point of view, IW 
is like adding wings to a tiger, mak- 
ing the latter more combat-worthy 
than before. 


Recent reports of hacker attacks 
on U.S. labs indicate that China is 
moving from theory to practice in 
security matters as well. The Wash- 
ington Times reported on 3 August 
2000 that hackers suspected of work- 
ing for a Chinese Government insti- 
tute broke into a Los Alamos 
computer system and took large 
amounts of sensitive but unclassified 
information. Los Alamos spokesper- 
son Jim Danneskiold stated that “an 
enormous amount of Chinese activ- 
ity’ occurs continuously .* 


The targets of Chinese IW include 
information sources; channels; 
destinations;> command, control, 
communications, computers and 
intelligence (C41); and electronic war- 
fare (EW) assets. First attack ob- 
jectives will be the computer 
networking system linking the po- 
litical, economic, and military instal- 
lations of a country and the ability 
to control decisionmaking to hinder 
coordinated actions. This |W focus 
implies that not just soldiers will 
conduct warfare in the future but ci- 
vilians too. Some Chinese theorists 
have recommended organizing net- 
work special warfare detachments 
and computer experts to form a 
shock brigade of “network warriors” 
to accomplish this task. 


Chinese IW experts recognize a 
need to reconsider how to compute 
the correlation of forces. The Chinese 
believe one can no longer calculate 
military strength using the number 
of armored divisions, air force wings, 
etc. In the information age, studies 
must include “invisible forces” such 
as computing and communications 
capabilities and system reliability.‘ 


A second reevaluation of warfare 
was more traditional in nature. Chi- 
nese theorists believe that the ca- 
pabilities and qualities of the 
information era enhance and breathe 
new life into Mao Zedung’s theory of 
a People’s War. 


Electronics, computer, and infor- 
mation engineering experts are likely 
to become the genuine heroes of a 
new People’s War, much like the 
warrior Class of the past.’ In addition 
to the economic factors, this may 
explain why China is willing to re- 
duce its Army—China can “keep up” 
with other countries by employing a 
multitude of information engineers 
and citizens with laptops instead of 
just soldiers. China clearly has the 


Military Intelligence 


people to conduct “take home battle,” 
a reference to battle conducted with 
laptops at home that allow thou- 
sands of citizens to hack foreign 
computer systems when needed. 
China has a number of superior soft- 
ware writers and much untapped 
potential in the information field. 
The problem is how to find more 
information space and equipment 
for all of these people.® 


Ideas for uniting a People’s War 
with IW are finding fertile ground 
in the 1.5 million-person reserve 
force of China. The People’s Lib- 
eration Army (PLA) is turning re- 
serve forces in some districts into 
mini-IW regiments. For example, 
in the Echeng District (about 700 
miles due south of Beijing) in Hubei 
Province, the People’s Armed 
Forces Department (PAFD) orga- 
nized 20 city departments (power, 
finance, television, medical, etc.) 
into a militia or reserve IW regi- 
ment. The PAFD had a network 
warfare battalion, as well as EW, 
intelligence, psychological warfare 
(PSYWAR) battalions, and 35 
technical “Fenduis” (squad to bat- 
talion units). The PAFD also set up 
the first reserve IW training base 
for 500 people. The Echeng District 
PAFD even gave a website at http:// 
ezarmy.net.° 


Echeng is not the only district with 
reserve or militia units conducting IW 
training. The Fujan Province held a 
meeting at Xiamen in December 
1999 that had reserve and militia 
forces. The report cited militia high- 
technology Fenduis that carried 
out electronic countermeasures, 
network attack and defense, and 
radar reconnaissance operations. 
They conducted these operations 
as part of an enforced blockade of 
an island—which may have impli- 
cations for Taiwan. The Xiamen 
area is a special economic zone 
and attracts a higher-than-usual 
number of science and technology 
clients to the area;"° thus, it is a 
prime area for I|W-related activities. 
There are also reports of reserve |W 


July-September 2003 


activity in Xian PAFD, and in the 
Datong military subdistrict (MSD). 


In Xian, the PAFD IW Fendui acted 
as the opposing forces (OPFOR) for 
a military district exercise in the 
Jinan Military Region. They listed ten 
information operations (lO) meth- 
ods: planting information mines, 
conducting information reconnais- 
sance, changing network data, re- 
leasing information bombs, 
dumping information garbage, dis- 
seminating propaganda, applying 
information deception, releasing 
clone information, organizing infor- 
mation defense, and establishing 
network spy stations." 


A third way the information age af- 
fected China’s attitude toward war- 
fare is an updating of historical 
strategies. Some 300 years ago, an 
unknown scholar compiled The Se- 
cret Art of War: The 36 Strata- 
gems, and emphasized deception as 
a military art that can achieve spe- 
cific military objectives. In the infor- 
mation age—characterized by 
anonymous attacks and uncertainty 
(e.g., uncertain origins of viruses, the 
existence of “back doors” in pro- 
grams, etc.)—the stratagems may 
be revitalized as a tactic. It should 
therefore be easier to deceive or in- 
flict perception management injuries 
(“guidance injuries” in Chinese). For 
example, one of the 36 stratagems 
is “besiege Wei to rescue Zhao.” 
This means when the enemy is too 
strong to attack directly, then attack 
something he holds dear. The IW 
application is that if you cannot af- 
ford a direct (nuclear) attack, then 
attack the servers and nets respon- 
sible for Western financial, power, 
political, and other systems stabil- 
ity. The journal China Military Sci- 
ence published an article about IW 
stratagems in 2001 indicating the IW- 
stratagem tie remains important. The 
information age is developing into the 
age of anonymous persuaders. 

A May 2000 Chinese article on 
Internet War offered the logic behind 
“why” military leaders might use such 
stratagems today. China is currently 


a relatively weak IO power and must 
use tricks and strategy to compen- 
sate for the shortage of material as- 
sets. '? 


A “net force,” if developed, would 
protect net sovereignty and engage 
in net warfare, a technology and 
knowledge-intensive type of warfare. 
Net technology would include— 


Q) Scanning technology to break 
codes, steal data, and take re- 
covery (anti-follow-up) actions. 

Y Superior offensive technol- 
ogy capable of launching at- 
tacks and countermeasures on 
the net, including information- 
paralyzing software, informa- 
tion-blocking software, and 
information-deception software. 

C) Masquerade technology ca- 
pable of stealing authority from 
the network by assuming a false 
identity. 

Q) Defensive technology that 
can ward off attacks, serve as 
an electronic gate to prevent in- 
ternal leaks, and block arbitrary 
actions, much like an electronic 
policeman. '* 

Chinese IW Definitions: 

Focus on Network and 

Cognitive Processes 

Studying Chinese IW definitions 
consecutively by year offers clues 
to the developing nature of Chinese 

IW theory. In 1996, the definition of 

IW offered by Shen Weiguang stated 

it is a war in which both sides strive 

to hold the battlefield initiative by 
controlling the flow of information 
and intelligence. Instead of protect- 
ing friendly information systems and 
attacking enemy systems, as the 

United States defines the term, Shen 

emphasized protecting oneself and 

controlling the enemy.'* Wang 

Pufeng stated the central issue in 

achieving victory in |W is control of 

information. Thus, in 1996, the em- 
phasis was clearly on control. 


In 1997, author Liang Zhenxing 
stated that IW includes all types of 
war-fighting activities that involve the 
exploitation, alteration, and paraly- 


23 








sis of the enemy's information and 
information systems, as well as all 
those types of activities that involve 
protecting one’s own information 
and information systems from simi- 
lar enemy actions. Liang added 
that the Chinese definition of IW 
should take cognizance of Chinese 
characteristics but be in line with 
the definition prevailing internation- 
ally. 


Another 1997 author, Wang 
Baocun, covered the forms, nature, 
levels, distinctions, features, and 
principles of IW. He listed forms of 
IW as peacetime, crisis, and war- 
time; the nature of IW as reflected 
in offensive and defensive opera- 
tions; levels of IW as national, stra- 
tegic, theater, and tactical; and other 
distinctions of |W as command and 
control (C2), intelligence, electronic, 
psychological, cyberspace, hack- 
ers, virtual, economic, strategy, and 
precision. He enumerated the fea- 
tures of IW as complexity, limited 
goals, short duration, less damage, 
larger battle space and less troop 
density, transparency, the intense 
struggle for information superiority, 
increased integration, increased 
demand on command, new aspects 
of massing forces, and the fact that 
effective strength may not be the 
main target. He stated that prin- 
ciples of IW include decapitation, 
blinding, transparency, quick re- 
sponse, and survival.'® 


In 1998, one analyst defined IW as 
the ability to hinder an opponent's 
decisionmaking while protecting 
friendly decisionmaking abilities. 
Note that the Chinese emphasis is 
not on attacking enemy informa- 
tion or information systems but on 
“hindering” an opponent's decision- 
making. 

In 1999, Chinese analysts returned 
to serious debate over IW issues. 
Shen Weiguang defined IW this time 
more broadly as involving two sides 
in pitched battle against one another 
in the political, economic, cultural, 
scientific, social, and technological 
fields. The fight was over information 


24 


space and resources. He defined IW 
narrowly as the confrontation of 
warring parties in the field of in- 
formation. The essence of IW is to 
attain the objective of “forcing enemy 
troops to surrender without a fight” 
through the use of information supe- 
riority."° This definition echoes his- 
torical Chinese thoughts on warfare, 
and implies information superiority is 
more of a cognitive- than systems- 
related process. Yuan Banggen, the 
head of a General Staff Directorate, 
stated that IW is “the struggle waged 
to seize and keep control over infor- 
mation,” and the struggle between 
belligerent parties to “seize the ini- 
tiative in acquiring, controlling and 
using information.” This is accom- 
plished by capitalizing on and sabo- 
taging the enemy's information 
resources, information system, 
“informationized” weapon systems, 
and by using and protecting one’s 
own information resources, informa- 
tion systems, and “informationized” 
weapon systems. Yuan thus substi- 
tutes “capitalizing and sabotaging’ 
for the U.S. term “attacking” while 
simultaneously emphasizing control. 
He also noted that IW is a kind of 
knowledge warfare. "’ 


In late December 1999, Xie Guang, 
the Vice-Minister of the Commission 
of Science, Technology and Indus- 
try for National Defense, stated that 
IW: 


...in the military sense means 
overall use of various types of in- 
formation techniques, equipment, 
and systems, using disturbance, 
misinformation or destruction of 
the enemy's information systems, 
particularly his command sys- 
tems, to shake the determination 
of the enemy's policymakers, and 
at the same time the use of all 
means possible to ensure that 
one’s own information systems 
are not damaged or disturbed."° 


In 2000, Wang Pufeng offered a 
deeper explanation of information war, 
distinguishing it from information 
warfare. In Wang's opinion, an in- 


formation war refers to a kind of 
war and a kind of war pattern, while 
information warfare refers to a 
kind of operation and a kind of op- 
erational pattern. The new opera- 
tional pattern refers to operations in 
a computer network space. IW em- 
braces information detection sys- 
tems, information transmission 
systems, information and weapon 
strike systems, and information pro- 
cessing and use systems. Informa- 
tion war includes information 
warfare. Both integrate information 
and energy and use an information- 
network-based battlefield as their 
arena. '° 


Few Chinese authors attempted to 
define |O but one who did was Yuan 
Banggen in 1999. Yuan stated that 
1O are specific |W operations. |W is 
the core of “informationized warfare,” 
whereas IO are the manifestation of 
information warfare on the battle- 
field. |O’s theoretical system devel- 
ops from two levels, fundamental 
and application. Basic theories con- 
sist of fundamental concepts about 
lO, its organizational structure and 
technological equipment, C2 for lO, 
etc. One can categorize application 
theories into offensive |O and defen- 
sive lO; strategic, operational, cam- 
paign, and tactical levels; and into 
peacetime, wartime, and crisis-pe- 
riod lO. All 1O activities center upon 
C2. |O’'s two missions are prepara- 
tion and implementation; its prin- 
ciples are centralized command, 
multilevel power delegation, multi- 
dimensional inspection and testing, 
timely decisionmaking, and the in- 
tegration of military and civilian ac- 
tions with a focus on vital links.7° 


Author Qi Jianguo suggested unit- 
ing the network with a People’s War. 
He recommended that the PLA es- 
tablish a People’s War organ that 
is an authoritative, centralized, and 
united network. It would control |O 
and networking activities, and 
allow for the conduct of mobiliza- 
tion exercises and education on 
People’s War on the network. Laws 
and regulations need formulation in 


Military Intelligence 


— 


“~~ 


order to standardize the preparations 
and development of a network 
People’s War.?' China must uphold 
the principle of combining the estab- 
lishment of networks for both war- 
time and peacetime use, setting up 
networks for both military and civil- 
ian use, and developing Internet ser- 
vice in a limited manner.” 


Wang Baocun also believes 
strongly in the union of |W and cog- 
nitive processes. He described per- 
ception structures, perception 
systems, and belief systems as |W 
components. He defined a percep- 
tion structure as: 


...all things that an individual or 
a group considers correct or 
true, regardless of whether these 
things that are considered correct 
or true have been obtained 
through perception or belief. 


His definition of perception structures 
says they comprise perception sys- 
tems, as those... 


systems which are established 
and operated in order to under- 
stand or observe verifiable 
phenomena by turning such phe- 
nomena into perceptible realities 
and subsequently to make deci- 
sions or take action on the basis 
of intuitive understanding of such 
realities. 


Belief systems are “systems which 
guide testable empirical information 
and such information and conscious- 
ness that cannot be tested or are 
hard to test.”*° 


Chinese Organizations 
and Training Needed to 
Conduct IW 

There are several organizations 
charged with IW instruction for the 
PLA. The lead organization is the 
Communications Command 
Academy. The Academy is in 
Wuhan, the capital of central China’s 
Hubei Province. In 1998, the Acad- 
emy announced the publication of 
two books, Command and Control 


July-September 2003 


in IW and Technology in IW that 
became the leading Chinese IW 
texts. The Academy is well re- 
spected for its |W curriculum that 
analyzes strategic, operational, and 
tactical |W requirements.” Interest- 
ingly, the Academy is not far from 
the reserve component IW regiment 
in Echeng district. 


Asecond leading PLA IW institute 
is the Information Engineering 
University, established by combin- 
ing the Institute of Information Engi- 
neering, the Electronic Technology 
College, and the Survey and Map- 
ping College. Located in Zhengzhou, 
the capital of Henan Province, the 
University will help cultivate profes- 
sionals for high-technology warfare 
involving the use of information, ac- 
cording to President Major General 
Zhou Rongting, and will create a 
number of new specialties such as 
remote-image information engi- 
neering, satellite-navigation and po- 
sitioning engineering, and map 
databanks. The major specialties 
include information security, modern 
communications technology, and 
space technology.” 


A third PLA IW location is the Sci- 
ence and Engineering University, 
established by combining the Insti- 
tute of Communications Engineer- 
ing, the Engineering Institute of the 
Engineering Corps, the Meteorology 
Institute of the Air Force, and the 
63d Research Institute of the Gen- 
eral Staff headquarters. It trains new 
military personnel in fields such as 
IW, communications and command 
automation, and other subjects.*° 
There are more than 400 experts 
and professors at the University 
teaching IW theories and technologi- 
cal subjects.*’ 


A fourth PLA IW-related institute 
is the National Defense Science 
and Technology University in 
Changsha. Directly under the su- 
pervision of the Central Military 
Commission, it is where China 
develops the “Yin He” series of 
supercomputers.*® From April to 


June 1999, some 60 senior offic- 
ers (average age 53) studied high- 
technology warfare at the University 
during the war in Kosovo. 


The Navy Engineering College, 
headed by President Shao Zijun, is 
a PLA Navy institute studying IW. 
The general orientation of the Col- 
lege is to combine arms and infor- 
mation. It hopes to help adapt the 
Chinese Navy to the combat needs 
of IW. 


The system of training advanced 
in 1996 to handle this problem 
involved first laying a sound strate- 
gic foundation, then improving 
everyone's knowledge about IW by 
studying the experiences of foreign 
armies. Then it stressed expanding 
basic IW skills, especially in elec- 
tronic and PSYWAR, and in infor- 
mation attack and defense. Finally, 
the training would emphasize con- 
verting knowledge to ability through 
the conduct of IW exercises. Press 
reports indicated that China followed 
this plan.” 


Conclusions 

What conclusions do we draw, 
first about Chinese IW and then 
about recommendations for the 
U.S. Armed Forces? First, Chi- 
nese military theorists have found 
a relatively cheap and malleable 
methodology in IW, one that can 
enable China to catch up with the 
West in both strategic military and 
international status. These areas 
could lead China to play an impor- 
tant strategic role in the Asia- 
Pacific region and to emerge gradu- 
ally into an economic competitor. 


Second, China has an unusual 
emphasis on the emerging role of 
new IW forces. These various groups 
include the potential development of 
a net force (separate armed forces 
branch, although no evidence to date 
has confirmed the existence of such 
a separate branch), a shock brigade 
of network warriors, information pro- 
tection troops, an information corps, 
electronic police, and a united net- 
work People’s War organ, among 


25 








other units. Interestingly, Western 
nations are currently the most ca- 
pable of instituting such a concept, 
since computers reside in so many 
homes and offices but the concept 
of forming an army from society is 
absent in these countries. Chinese 
theorists believe the side mobilizing 
the most computer experts to par- 
ticipate in take-home battle will very 
likely determine an IW victory. 
These forces would employ a strat- 
egy such as net point warfare, at- 
tempting to take out important 
information nodes and junctions. 
The Chinese believe in the power 
of network stability, and focus 
greatly on the protection of the 
network. 


Third, Chinese |W emphasis re- 
flects a mixture of Western and Chi- 
nese thinking that is moving away 
from the former. It is a Chinese pro- 
Clivity to stress control, computer- 
ized warfare, network warfare, and 
knowledge warfare in addition to 
information superiority and “sys- 
tem of systems” theories, which 
have become the Western norm. 
Chinese thinking is closer to that 
of the Russians due to a common 
frame of reference (military art and 
the Marxist dialectic). There has 
also evolved a Chinese specific |W 
lexicon that is different from that 
used by Russia and the West. 


Fourth, Chinese IW often looks to 
Chinese military history to find an- 
swers to today’s problems, such as 
The Secret Art of War’s 36 strata- 
gems. IW appears to fit well with 
these stratagems. Yet China recog- 
nizes the capabilities inherent in 
Western IW and wili think twice be- 
fore engaging. 

Thus for the U.S. military, a study 
of Chinese |W methods would be not 
only advisable but also required. 
Such a study might uncover inher- 
ent |W weaknesses in the U.S. 
system when analyzed through the 
thought process of another ideo- 
logical prism or framework. The 
worst mistake that the United States 


26 


can make is to use its own process 
for uncovering vulnerabilities exclu- 
sively, since there are other problem- 
solving schemes (e.g., the dialectic) 
available. As the Chinese have said, 
losers in IW will not just be those 
with backward technology but 
those who lack command thinking 
and the ability to apply strategies. 
It is worth the time of the U.S. ana- 
lytical community to scrutinize a 
variety of IW strategies and tactics. 


ei 
an al 





Endnotes 


1. To some Chinese theorists, the 
cornerstone of !W’s operational theory 
involves preserving the integrity and 
stability of the infrastructure of one’s 
side to perform these functions. 
Infrastructure stability is more impor- 
tant than survivability of units. See 
Wang Jianghuai and Lin Dong, “View- 
ing Our Army’s Quality Building from the 
Perspective of What Information 
Warfare Demands,” Beijing Jiefangjun 
Bao, 3 March 1998, page 6, as 
translated and downloaded from the 
FBIS website on 16 March 1998. 


2. Shen Weiguang, “Focus of Contem- 
porary World Military Revolution— 
Introduction to Research in IW,” 
Jiefangjun Bao, 7 November 1995, 
page 6, as translated and reported in 
FBIS-CHI-95-239, 13 December 1995, 
pages 22-27. 


3. Wang Jianghuai and Lin Dong, ID at 1. 


4. Bill Gertz, “Hackers Linked to China 
Stole Documents from Los Alamos,” The 
Washington Times, 3 August 2000, 
page 1. 

5. Wang Jianghuai and Lin Dong, page 6 


6. Hai Lung and Chang Feng, “Chinese 
Military Studies Information Warfare,” 
Hong Kong Kuang Chiao Ching 
(Hong Kong), 16 January 1996, Number 
280, pages 22, 23, as translated and 
published by FBIS-CHI-96-035, 21 
February 1996, pages 33, 34. 


7. Shen Weiguang, pages 22-27. 


8. Wang Xiaodong, “Special Means of 
Warfare in the Information Age: Strategic 
Information Warfare,” Jianchuan 
Zhishi, 30 June 1999, as translated and 
downloaded from the FBIS website on 27 
July 1999. 


9. China National Defense News, 24 
January 2000, provided by Mr. William 
Belk via E-mail. Mr. Belk is the head of a 
skilled U.S. Reservist group that 
studies China 


10. China National Defense News, 15 
December 1999, page 1, provided by Mr. 
Belk via E-mail. 


11. Qianjin Bao, 10 December 1999, 
provided by Mr. Belk via E-mail. 


12. Qi Jianguo, “Thought on Internet War,” 
Beijing Jiefangjun Bao, \|nternet version, 
16 May 2000, page 6, as translated and 
downloaded from the FBIS website on 16 
May 2000. 


13. Ibid. 


14. Shen Weiguang [no title provided], 
Beijing Zhongguo Guofang Keji X, 
September-December 1996, No 5/6, 
pages 87-89, as translated and reported 
in FBIS-CHI-98-029, insert date 30 
January 1998. 


15. Wang Baocun, “A Preliminary Analysis 
of IW.” Beijing Zhongguo Junshi Kexue, 
Number 4, 20 November 1997, pages 
102-111, as translated and downloaded 
from the FBIS website on 20 November 
1997, 


16. Shen Weiguang, “Checking Informa- 
tion Warfare-Epoch Mission of Intellectual 
Military,” Jiefangjun Bao, 2 February 
1999, page 6, as translated and down- 
loaded from the FBIS web site on 17 
February 1999. 


17. Yuan Banggen, “On IW, Digital 
Battlefields,” Beijing Zhongguo Junshi 
Kexue, 20 February 1999, pages 46-51, 
as translated and downloaded from the 
FBIS website on 17 July 1999. 


18. Xie Guang, “Wars Under High Tech,” 
Beijing Renmin Ribao, 27 December 
1999, page 7, as translated and down- 
loaded from the FBIS website on 30 
January 1999. 


19. Wang Pufeng [no title provided], Hong 


Kong Hsien-Tai Chun-Shih (Conmilit), 


11 April 2000, pages 19-21, as translated 
and downloaded from the FBIS website 
on 3 May 2000. 


20. Yuan, ID at 17 
21. Qi Jianguo, ID at 12, page 6 
22. Ibid 


23. Wang Baocun, “New Military Revolu- 
tion in the World, ‘“Subduing Enemy Force 
without Battle’ and Informationized 
Warfare,” Zhongguo Junshi Kexue, 4 
May 1999, pages 60-63, as translated 
and downloaded from the FBIS website 
on 23 August 1999 


24. Lei Yuanshen, “New Breakthrough in 
the Study of Information Warfare,“ 
Jiefangjun Bao, 21 July 1998, page 6, 
as translated and downloaded from the 
FBIS website on 12 August 1998. 


25. “University to Foster Talent for High- 
Tech Warfare,” Xinhua, 17 November 
1999, as translated and downloaded from 
the FBIS website on 17 November 1999. 


Military Intelligence 





-i— 


_ 





26. Ma Xiaochun, “PLA Sets Up Four New 


Academies,” Beijing Xinhua, 2 July 1999, 


as translated and downloaded from the 
FBIS website on 7 July 1999 


27. “PLA Trains Personnel for Information 
Warfare,” Hong Kong Tai Yang Pao, 15 
September 1999, page A17, as translated 
and downloaded from the FBIS website 
on 15 September 1999. 


28. Guo Hao, “Chinese Military Prepares 
to Fight Digital Warfare,” Hong Kong 
Kuang Chiao Ching, 16 March 2000, 
Number 330, pages 19-21, as translated 
and downloaded from the FBIS website 
on 16 March 2000 


29. Cheng Bingwen, “Let Training Lean 
Close to Information Warfare,” 
Jiefangjun Bao, 12 November 1996, 
page 6, as translated and reported in 


FBIS-CHI-96-230, inserted on 29 Novem- 
ber 1996. 


Timothy Thomas (Lieutenant Colonel, U.S. 
Army, Retired) is an analyst at the For- 
eign Military Studies Office (FMSO) at 
Fort Leavenworth, Kansas. He was a U.S. 
Army Foreign Area Officer who special- 
ized in Soviet and Russian studies and 
his military assignments included serv- 
ing as the Director of Soviet Studies at 
the United States Army Russian Insti- 
tute (USARI) in Garmisch, Germany; as 
an Inspector of Soviet Tactical Opera- 
tions under the Commission on Security 
and Cooperation in Europe (CSCE); and 
as a Brigade S2 and Company Com- 
mander in the 82d Airborne Division. He 
earned a Bachelor of Science degree from 
the U.S. Military Academy at West Point, 


New York, and a Master of Arts degree from 
the University of Southern California. Mr. 
Thomas has done extensive research and 
publishing in the areas of peacekeeping, 
information war, psychological operations, 
low-intensity conflict, and political-military 
affairs. He is the Assistant Editor of the 
journal European Security; an Adjunct 
Professor at the U.S. Army’s Eurasian 
Institute; an Adjunct Lecturer at the U.S. 
Air Force Special Operations School; 
and a member of two Russian organiza- 
tions, the Academy of International In- 
formation and the Academy of Natural 
Sciences. Mr. Thomas’ articles also have 
appeared in Russian publications and 
Czech Military Thought; and he has co- 
authored several articles with Russian mili- 
tary officers. Mr. Thomas speaks and reads 
Russian. 





U.S. Army Reserve Command MI Augmentation Detachment 


Military Intelligence (Ml) soldiers are a critical U.S. Army asset. The nation has a real interest in preserving and 
employing these skills, especially as the MI soldier gains experience in using these hard-won skills. To retain 
these soldiers and their skills for the nation, the U.S. Army Reserve Command established the Military intelli- 
gence Augmentation Detachment (MIAD) directly subordinate to the USARC. The MIAD’s mission is to facilitate 
life-cycle management of MI soldiers in the Reserve Component (RC). The Detachment accomplishes its mis- 
sion by assigning USAR enlisted, warrant, and company-grade soldiers to USARC high-priority Mi units with 
vacancies. The MIAD enables Ml-qualified soldiers who do not reside near a USARC Tier 1 unit to be productive 
members of the U.S. Army Reserve (USAR). The primary MIAD focus is the retention of soldiers leaving active 
duty, soldiers displaced by unit reorganizations or inactivation, and USAR soldiers relocating to an area without 
a USAR MI unit. 


After joining the MIAD, MI soldiers have funding to attend a minimum of six 3-day trips in active-duty-for-training 
(ADT) status each fiscal year. These normally occur during the unit's weekend training periods. During these six 
ADT periods, the MIAD funds the soldier's transportation and lodging expenses. The soldier also must perform 
a minimum of 24 mutual training assemblies (MUTAs) either at a unit close to his home or through other means 
such as performing intelligence-related work using the World Basic Information Library. The MIAD will also fund 
travel and base pay for the soldier's annual training period (normally two weeks each year) if it is more than 
normal commuting distance of the soldier's home. Some USAR MI personnei perform their AT as overseas 
deployment training (ODT). 


Languages Needed 

Currently the MIAD needs soldiers with language skills in Arabic, Chinese-Mandarin, French, Korean, Persian- 
Iranian, Spanish, Russian, Serbo-Croatian, Thai, Turkish, Urdu, and Vietnamese. Soldiers not skilled in critical 
languages may be eligible for attendance at the Defense Language Institute (DLI). 


Additional MIAD Opportunities 

The MIAD also manages soldiers in two other types of units. A limited number of MIAD soldiers can serve as 
Technical Intelligence Analysts with 203d MI Battalion at Aberdeen Proving Ground, Maryland. The 203d is a 
multiple-component (MultiCompo) unit and the only technical intelligence battalion in the Army. To be eligible for 
this assignment, soidiers must be qualified Technical Intelligence Analysts. Most of these positions are at the 
Sergeant, Staff Sergeant, and Sergeant First Class levels. MI NCOs can also serve with one of the five Army 
Reserve Total Army School System (TASS) units as MI Instructors. These soldiers have the important job of 
instructing RC soldiers in Mi subjects. 


Contacting the MIAD 

Active duty soldiers leaving the Active Army who are interested in an MIAD assignment can obtain more informa- 
tion from their post transition counselors. Additional information on the MIAD is available from the Army Knowl- 
edge Online (AKO). Go the Army Communities/Army Reserve/Direct Reporting Units and click on the MI 
Augmentation Detachment. You can also contact the MIAD via E-mail at MIAD2@usarc-emh2.army.mil or by 
telephoning 1-800-359-8483, extensions 9546/8896. 











July-September 2003 27 








Determining Battlefield Effects in an Urban 
Environment: MOUT Terrain Analysis 


by Lieutenant Colonel 
Alfonso J. Ahuja 


The increased population and 
accelerated growth of cities have 
made the problems of combat in 
built-up areas an urgent requirement 
for the U.S. Army. This type of 
combat cannot be avoided. 


—FM 90-10-1' 


Military operations in Panama, So- 
malia, Kuwait, Bosnia-Herzegovina, 
and Iraq demonstrate the current and 
future requirements for U.S. forces 
to be able to operate effectively in 
an urban environment; the need for 
an urban warfare capability will not 
diminish in the future. Operations in 
an urban environment will present 
unique and complex challenges for 
all of our Battlefield Operating Sys- 
tems (BOSs). The increasing focus 
on stability operations and support 
operations—to include Peacekeep- 
ing Operations, Combating Terror- 
ism, Noncombatant Evacuations, 
Nation Assistance, Civil Disturbance 
Operations, Humanitarian Assis- 
tance, etc.—merely reinforces that 
more attention must be given to op- 
erations in an urban environment. In- 


=a Eo 
a ee 






White Face (Entrance) 54 





28 


Rectangular-shaped, white, two, echo identifies the exact location of the 


fifth window, second floor of the white (front) side of the structure 


telligence doctrine must address 
these needs. 


The most recent version of FM 34- 
130, Intelligence Preparation of 
the Battlefield, dated 8 July 1994, 
added a chapter to address the 
various considerations of the IPB 
process when conducting stability 
and support operations. The number 
of this type of operation has in- 
creased, and the Army increasingly 
conducts these operations in an ur- 
ban environment. 


The current FM 34-130, Chapter 
6, IPB for Operations Other than 
War, does not adequately address 
the focus of the IPB process in the 
urban environment. The previous ver- 
sion of FM 34-130 (May 1989) had 
Appendix B, IPB in the Urban Battle, 
which addressed in detail the spe- 
cial considerations for conducting 
the IPB process in an urban envi- 
ronment. The current FM 90-10-1, 
An Infantryman’s Guide to Com- 
bat in Built-up Areas, has a chap- 
ter on Urban Analysis and an 
appendix on Urban Building Analy- 
sis that contains some of the mate- 
rial that was in the 1989 version of 


Green 
Face 


a 


Ground Level 


FM 34-130. While this is a good 
source of doctrinal information, unit 
S2s should not need to go to an in- 
fantry manual to find doctrine on the 
IPB process. 


‘ FM 90-10- 
r FM 3-06, Urban Op- 
erations x 


7.7 Su 


While operations in an urban envi- 
ronment affect all steps of the IPB 
process, the focus of this article is 
on terrain analysis as part of Step 2, 
Describe the Battlefield Effects. To 
succeed in battle in built-up areas, 
commanders and leaders at all lev- 
els must understand the nature of 
the environment. To assist com- 
manders, S2s must analyze the ef- 
fects of urban terrain on enemy 
forces, unaligned elements, and 
friendly forces. 


Terrain analysis in an urban envi- 
ronment differs from that of open ter- 
rain in many respects. The analysis 
of the five military aspects of terrain— 
obstacles, avenues of approach, key 
terrain, observation and fields of fire, 
concealment and cover (OAKOC)— 
still applies. This analysis, however, 
must be in the context of urban 
battlefield characteristics. A standard 
modified combined obstacles over- 
lay (MCOO) developed from a mili- 
tary map and done in accordance 
with the current FM 34-130 will not 
be of much use to leaders at the 
company level and below. 


Military Intelligence 








Doctrine Note: Emerging doctrine, to include production of STs, is already aggressively pursuing many of the issues 
raised by the author, and we are making efforts to incorporate existing, combat-tested methodologies. An example, 
taken from (Draft) ST 2-01.103, intelligence Support to Urban Operations, follows: 


There is, however, no standardized Army protocol to assist unit leaders (all echelons) in identifying key 
structural elements. Rather than enforce a position that may not allow the necessary flexibility, policy allows 
mission leaders and organizations to develop their own formats. This may include the Ranger Numbering 
standing operating procedure (SOP) or the Marine Corps Sniper Guide. Without being unduly restrictive, the 
objective continues to be standardization only at the mission letter. Figure 1 is provided only as an example 
of structural labeling although it does reflect all critical points. Figure 2 outlines procedures that may be 
followed and explains structural labeling. 








Standard military maps do not have 
the detail required to allow S2s to 
conduct a thorough analysis of ur- 
ban terrain. Many standard military 
maps are old and do not reflect the 
more recent buildings, streets, and 
sometimes even significant urban 
growth. In addition, standard maps 
do not show the subsurface aspects 
of the urban environment: sewers, 
subways, and underground water 
systems. While these military maps 
show key public buildings and areas 
such as hospitals, clinics, stadiums, 
and parks, they do not clearly iden- 
tify the water facilities, communica- 
tion facilities, fuel supply, storage 
facilities, and temporary conditions 
(e.g., construction sites). 


The S2’s analysis of these unique 
aspects of urban terrain is crucial to 
the commanders’ appreciation of the 
nature of this terrain. 


“) Sewer and subway systems can 
provide infiltration routes. 

Q) Elevated railways and mass 
transit routes provide mobility on 
which the urban residents de- 
pend; if operations destroy or 
disable these facilities, conges- 
tion will occur. 

J Utilities such as electrical, gas, 
or water facilities may be key 
targets. 

) While forces cannot attack hos- 
pitals and clinics when not un- 
der use for military purposes, 
they may be a source of medi- 
cal support for all factions and 
elements. 


WJ Stadiums, parks, and sports 
fields may serve as holding ar- 


July-September 2003 


eas, enemy prisoner of war 
(EPW) facilities, or landing and 
pickup zones. 

Q) Construction sites and other 
commercial operations may be 
a source of Class IV? materials. 


S2s must obtain maps or other im- 
agery that contains this information 
so that they can analyze it and pro- 
vide that product to maneuver com- 
manders. 

The Army must somewhat alter 
analysis of the five military aspects 
of terrain (OAKOC) to consider fully 
the unique aspects of urban terrain. 
More than any other environment, the 
urban battlefield is dynamic. De- 
pending on the street layout patterns, 
people can create or improvise 
manmade obstacles quickly to block 
narrow streets or these obstacles 
may not be a significant factor where 
streets are wider. Natural obstacles 
arguably pose less of a problem in 
urban terrain than in open terrain. 
Rubble caused by direct or indirect 
fire may impede both mounted and 
dismounted movement. In relatively 
rare circumstances, rubble may ac- 
tually aid movement, such as when 
a building collapses across a canal, 
thereby providing access to the 
other side. These are the types of 
factors that make the urban environ- 
ment dynamic. 


S2s must analyze avenues of ap- 
proach from all dimensions—air, 
ground, and subsurface—which gen- 
erally requires separate overlays 
depicting air, ground, and subsurface 
avenues of approach. From these 
overlays, analysts should be able to 


determine what size forces they can 
support, and advise the commander 
appropriately. This analysis should 
also allow the commander and the 
remainder of the staff to answer cer- 
tain vital questions like: 


) Are the avenues of approach 
linked? 


() Ifso, where? 


4) What is the possible impact on 
enemy or friendly courses of 
action (COAs)? 


Key terrain will vary based on the 
composition of the urban area and 
the nature of the threat. If the enemy 
prefers using snipers, then buildings 
providing good observation and fields 
of fire may be key terrain; if the en- 
emy prefers strongpoints, then highly 
reinforced buildings (e.g., banks) that 
dominate intersections may become 
key terrain, and so forth. 


Observation and fields of fire will be 
much more restrictive in an urban 
environment and the use of photos 
and imagery will be invaluable. The 
ability of the S2 and his section to 
do photographic and imagery analy- 
sis will be a significant factor in the 
quality and quantity of information 
they are able to provide. 


Analysis of cover and concealment 
is also vital to success on the urban 
battlefield. Building characteristics, 
masonry, wood, brick, and even 
glass can all provide varying degrees 
of protection from observation, as well 
as the effects of weapons and muni- 
tions. 


S2s, especially at battalion level, 
must be able to provide analysis of 


29 




































































Step Concern Details 
1 Structural Structural shapes will be identified as square, rectangular, T-shaped, L-shaped, 

Shape U-shaped, H-shaped, X-shaped, and irregular. 

Square Designed so that all four sides are of equal size. Such designs are normally found in 
inner-city construction, smaller family dwellings, and in utility company maintenance 
buildings. 

Rectangle Designed so that opposite sides are of equal size. The most commonly used shape 
in building construction. 

T-shaped A modification of a square or rectangle with a wing extending from the center of the 
front or back of the building. 

L-shaped A modification of a square or rectangle with a wing extending from one ed or the 
other of the front or back of the building. A common design for family dwellings. 

U-shaped A modification of a rectangle with a wing extending from each end of the front or back 
of the building. A modification of a U-shape is the multiple U, with more than two 
wings extending from the front or back. The U-shape is common to larger official 
buildings and hospitals. 

H-shaped A modification of a rectangle with a wing extending from each end to the front and 
back. A modification of the H-shaped is the multiple H. The multiple H has more than 
two wings extending to the front and back. 

X-shaped A center common area with T-shaped wings extending from the center of each side. 
X-shaped designs are found in some apartment complexes. 

Irregular Buildings that do not fit traditional designs such as the Pentagon, religious structures, 
sports arenas, and permanent fortifications. 

2 Structural Face Once the shape has been determined, the structure’s main entrance is located and 

Designation designated “white.” If none of the building faces are identifiable as the main one, the 
commander will designate a face as white. Once done, the other faces will be color- 
coded in a clockwise manner with the white face serving as the base. While facing the 
white face, progressive faces will be designated as red, black (rear face), and green. 
For irregularly shaped structures the white face will be designated and the remaining 
faces color-coded. Any report addressing this structure will include the direction the 
sides take relative to each other. An example of color-coding and shape follows. 
EXAMPLE: “/rregular, white face one, white face two right, red face, black face, green 
face.” This describes a pentagon-shaped irregular design. 

3 Measurement Once the structural faces have been color-coded the shape, face color, and 

of Side Lengths dimensions of the respective sides will be given. For irregularly shaped structures the 
same procedure is used with the addition of direction the sides take relative to each 
other. Send measurements as feet, length first followed by height. EXAMPLE: 
“Rectangle, red face 20 by 30.” 

o Numbering Floors will be numbered from “1” beginning with the ground floor. (Basements and 
of Floors other subterranean areas are addressed later.) Roofs, floors, attics, porches, 
balconies, chimneys, stairs, fire escapes, and other substructures will not be 
numbered but designated as what they are. Once the structural shape, face, and 
measurements are reported, then report using face, floor, and any additional 
information. EXAMPLE: “Black face, three, patio and fire escape.” 
5 Numbering Windows will be designated “window,” doors as “door,” and all other openings as 
of Windows “opening.” Designate from left to right as “Alpha, Bravo, Charlie, etc.” EXAMPLE: 
or Openings “Window Alpha”; “Opening Delta.” 
6 Numbering Sub-basements, tunnels, or vaults may be dug deep into the earth and provided 

of Basements multiple subterranean levels. Such structures will be designated one at a time and 

and Other given an alpha designation (first level = Alpha, second level = Bravo, third level = 

Subterranean Charlie). Additionally, the type of structure or equipment on a given level must be 

Levels identified as in the example below. EXAMPLE: A basement will be designated 
basement. “Sub-basement ‘Alpha’ parking garage.” “Tunnel ‘Charlie’ gas pipeline.” 
“Vault ‘Delta’ with electrical conduit tunnel.” (Reflects a vault on the 4th level below 
the street level and that it has electrical conduits or lines running through it.) 

Figure 2. Details of Structural Labeling. 
30 


Military Intelligence 


individual buildings to support sub- 
ordinate maneuver commanders. It 
is not enough to describe the gen- 
eral characteristics of an urban area. 
Maneuver commanders need indi- 
vidual building analysis to generate 
effective COAs in the planning pro- 
cess. The number of floors and 
rooms in a building are essential to 
determining the proper allocation of 
forces. A staff will not be able to allo- 
cate adequate resources to seize an 
objective or to isolate a series of 
buildings if the S2 does not provide 
this level of detail. 


Subordinate maneuver command- 
ers and leaders must do their own 
analysis to refine the S2’s products. 
However, S2s must understand the 
initial level of detail required from the 
intelligence staff section. Figure 3 
is a building analysis matrix that a 
brigade or battalion S2 could use as 
a collection tool or as a means of 
information management and dis- 
semination. 


The S2 assigns buildings a 
means of identification. This could 
be a number or letter or a combi- 
nation. For each building the S2 
section provides the information for 
the remaining columns. S2s can 
obtain the information from the in- 
telligence section’s photographic 
analysis, reconnaissance reports, 


CONST YNU 


—~ —  _] $< — — 
BLDG#| TYPE (FLOORS |ROOMS|STAIPWELLS BASEMENT) ATTIC) APERTURES FIELDS | ENTRY/EXIT| ADDITIONAL 
YNU NSEW |OF ARE LOCATIONS} INFORMATION 


——+ ---— — = 4 == 


or satellite or unmanned aerial ve- 
hicle (UAV) imagery, as well as 
soldiers’ reports. 


The type of construction helps to 
determine the level of protection the 
building will provide and possible 
weapons effects. This is important 
to commanders as it will drive deci- 
sions on the types of weapons and 
breaching techniques the adversary 
may employ. 


The number of floors in a building 
will likewise influence the resources 
required. These resources include 
the number of clearing teams, quan- 
tity of ammunition, time required to 
clear, or the size of the force neces- 
sary to secure a particular floor or 
building. The number of rooms per 
floor is also important for the same 
reasons. While it is no easy task to 
determine the number of rooms and 
floors without building blueprints or 
having been in the building, the num- 
ber of apertures and their locations 
provide a reasonable indicator. Infor- 
mation from various sources includ- 
ing imagery or scout reports can help 
determine the number of apertures. 


Stairwells can become choke- 
points and S2s must consider them 
in planning. The same is also true 
for basements and attics. There are 
indicators, such as windows at 
street level and gables in roofs, that 





ee 


__———— ee 











Key: 
Y/N/U - Yes/No/Unknown 
N/S/E/W - North/South/East/West 


Figure 3. Building Analysis Matrix. 


July-September 2003 


can assist the S2 in this analysis. 


The number of apertures and their 
locations assist in determining ob- 
servation and fields of fire. If the ap- 
ertures on the northern side of a 
particular building provide the best 
observation and fields of fire, it indi- 
cates that either entry will require 
suppression of these apertures, or 
that entry should be from a different 
direction. 


The S2 section can use the final 
block of the matrix for any additional 
information. This might include out- 
side fire escapes, distances between 
buildings, etc. 


Maneuver brigades, battalion com- 
manders, and their subordinate com- 
manders need S2s who can apply 
the IPB process in an urban fight. 
The current FM 34-130 does not spe- 
cifically address this critical require- 
ment but the process is the same. 
As the Army updates and develops 
manuals and special texts, this will 
provide maneuver brigade and bat- 
talion S2s with a doctrinal source to 
reference for training their sections. 
Endnotes 


1. FM 90-10-1, An Infantry man’s 


Guide to Combat in Built-up Areas. 





2. Army Class of Supply IV includes 
construction and barrier material. 


Lieutenant Colonel Al Ahuja currently 
serves as the Deputy G3 for 101st Airborne 
Division (Air Assault) and assumes com- 
mand of 3-502 IN in July. His past assign- 
ments include company command in the 
82d Airborne Division and 5th Ranger 
Training Battalion, Small Group Instructor 
and Doctrine Writer at the Infantry School, 
Battalion and Brigade S3 in the 3d Brigade, 
101st Airborne Division (Air Assault), and 
Chief of Military Training at the U.S. Mili- 
tary Academy. His military education in- 
cludes the Infantry Officer's Basic and 
Advanced Courses and Command and 
General Staff College. Readers may con- 
tact the author via E-mail at (work) 
alfonso.ahuja@us.army.mil or (home) 
ahuja3@earthlink.net and telephonically at 
(270) 798-6103. 


31 








The Yew Counterintelligence 
Response to the Cyberthreat 


by Chief Warrant Officer Two 
Bobby Allen 


U.S. counterintelligence (Cl) ele- 
ments must refocus to defend 
against the rapidly expanding cyber- 
intelligence collection threat. The 
cyber-revolution in military affairs 
has already started, before even a 
consensus on its definition has been 
reached. Earlier policies of risk-avoid- 
ance and placing too much empha- 
Sis On personal privacy at the 
expense of national security have 
degraded intelligence potency and 
hampered traditional Cl efforts. After 
11 September 2001, however, U.S. 
citizens now seem more willing to 
concede that privacy matters less 
than an aggressive and effective in- 
telligence collection capability (in- 





32 





cluding Cl activities) to combat the 
new face of terrorism. If the cultural 
and legal trend of returning to a 
national security focus continues, 
aggressive human intelligence 
(HUMINT) collection that goes af- 
ter real secrets, and Cl operations 
that genuinely exploit foreign intel- 
ligence and security services 
(FISS) may return. 


The Threat Is 
Sophisticated 


Today’s spies practice much 
more sophisticated methods and 
employ the latest technologies to 
gather and transmit massive vol- 
umes of our most sensitive informa- 
tion on a much wider variety of 
targets. FISS can and do leverage 
distributed cyberattacks routed 
through many countries using a wide 
variety of tactics and techniques, 
making it nearly impossible to 
state with certainty that any par- 
ticular attack originated from a par- 
ticular threat. Over time, computing 
power will completely overwhelm 
our ability to comprehend, let alone 
protect against, the exponentially 
expanding vulnerabilities created 
with new technologies. It is impera- 
tive that Cl stays ahead and avoids 
technological surprise— 


...the unilateral advantage 
gained by the introduction of a 
new weapon (or the use of a 
known weapon in an innovative 
way)...against an adversary who 
is either unaware of its existence 
or not ready with effective coun- 
termeasures....' 


The intelligence community must 
embrace new technologies, care- 
fully selecting those that best suit 
strategic intelligence purposes. 
Perhaps the best method to main- 
tain compartmentalization and still 





maximize the use of new technolo- 
gies is to recruit small groups of 
highly specialized technicians to 
explore each technology potential 
from both a defensive perspective 
(what can the threat do to us?) and 
for possible offensive operations 
(how can we use this against the 
threat?). 


The Insider Threat 


The greatest threat is from trusted 
insiders with placement and access 
to highly sensitive classified infor- 
mation. It is a relatively simple 
task to plug in a miniature data- 
storage device and save hundreds 
of megabytes of classified data they 
can easily smuggle out. It is equally 
easy for an insider to save this data 
to floppy disks, compact discs with 
read-only memory (CD ROMs), or 
even to another hard drive they 
brought in themselves. Unlike most 
other crimes, it is technically pos- 
sible for a spy to encrypt, hide evi- 
dence using stenography, or both, 
and even completely delete all 
traces of evidence that was once 
on media.’ 


Cl can conduct operations to in- 
vent new ways of detecting and re- 
sponding to this type of attack. 
Modern security devices cannot 
replace traditional security prac- 
tices such as background checks, 
awareness training, physical se- 
curity, and internal investigations. A 
dramatic demonstration can be had 
by any company willing to hire a 
person or agency to attempt to in- 
filtrate and discover information 
about their own company. Within 
days, an individual can gather in- 
formation from the Internet, use 
fake identification to gain employ- 
ment, observe passwords, and ac- 
cess sensitive information.’ There 
is no easy solution to preventing 


Military Intelligence 


this kind of threat; enforcing strict 
security policies and providing 
awareness training with random 
spot-checking appears to be the 
best compromise solution for now. 


We Are Our Own 
Worst Enemy 

Political policies and social beliefs 
since the Reagan Administration 
have resulted in a win-win situation 
for FISS. The policy of recklessly 
declassifying information, along with 
our Cultural penchant for sharing sen- 
sitive but unclassified information, 
combined with our institutional mi- 
gration to put everything on the 
Internet for ease of data dissemina- 
tion, have combined to make collect- 
ing on the United States terribly easy. 
The hampering of HUMINT and Cl 
operations and investigations in the 
name of privacy have permitted un- 
told numbers of FISS agents to op- 
erate unimpeded for years. 


The Networked 
Vulnerability 

Isolating secure systems from 
nonsecure systems, enforcing evolv- 
ing “best practices,” using strong 
physical security, and constantly 
monitoring networks for anomalies 
can reduce the networked threat. 
“The head of the Computer Emer- 
gency Response Team (CERT) once 
estimated that well over 90 percent 
of all reported break-ins were made 
possible because hackers could 
exploit known but uncorrected weak- 
nesses of the target system.” * 
Wherever there is the possibility of 
crossing unclassified with classified 
networks through negligence or will- 
ful intent, the remote attack is pos- 
sible. Like criminals, FISS will 
continue to seek ways of gaining un- 
authorized access to sensitive net- 
works simply because there is very 
little to lose in trying. 


The Federal Bureau of Investiga- 
tion (FBI) is investigating a record 
number of espionage cases be- 
cause “if there is a way to make a 
criminal’s job easier and safer, he 


July-September 2003 





is going to use it.”® Although it may 
be a better method to spot, assess, 
and recruit insiders, the novel meth- 
ods to access information remotely 
have much greater potential than 
just having a spy steal files. The “use 
of cryptographic hardware tokens to 
authenticate users when logging into 
systems and networks”® would tre- 
mendously increase security when 
implemented with subnetting to iso- 
late internal access to networked 
information. 


Often networks are very compli- 
cated and require a great deal of 
time and understanding to evaluate 
their vulnerabilities properly. We 
should only permit the people with 
the right training to do this job, es- 
sentially creating a specialty within 
a specialty. Random, unannounced 
spot-checking would ensure that ad- 
ministrators and users have not 
changed configurations, compromis- 
ing security for convenience or reli- 
ability. Here Cl can play a role in 
detecting network intrusions by 
creating systems or networks that 
appear attractive to a networked at- 
tacker to learn their methods of in- 
trusion, or other technical detection 
operation. However, even with the lat- 
est network firewalls, intrusion de- 
tection systems, virus scanners, 
encryption, compartmentalization, 
and security policies, vulnerability 
exists anywhere there is a connec- 
tion to the outside world. 


What To Do 


The Army must quickly define the 
role of Cl in combating the cyber- 
intelligence threat and implement 
policies. Neither the U.S. Govern- 
meni nor its civilian experts alone 
can stymie the terrorist and FISS 
cyberthreat. The task of protecting 
U.S. information systems and other 
critical infrastructures requires the 
combined effort of the best minds of 
civilian industry, military, govern- 
ment, think-tanks, and academia. 
The National Infrastructure Protection 
Center (NIPC) has the responsibility 
to protect critical infrastructure from 





all threats; Cl is only a portion of that 
responsibility. The current reorga- 
nization underway of the FBI by 
its Director Robert Mueller, III, is 
an excellent model for Department 
of Defense (DOD) Cl assets to de- 
fine and implement changes neces- 
sary to thwart the ever-increasing 
cyberthreat. 


The U.S. Army Intelligence and 
Security Command (INSCOM) cre- 
ated the Land Information Warfare 
Agency (LIWA)—now redesignated 
the 1st Information Operations Com- 
mand (Land)—to support the ground 
commander in information operations 
(lO) and information warfare (IW). The 
mission of 1st |O Command (Land) 
is broad and overarching, and often 
conflicts with that of other agencies 
providing similar services. However, 
the creation of LIWA and now the 
1st |O Command demonstrates the 
migration toward a more comprehen- 
sive assessment and defense of our 
information systems, in which Cl will 
play a vital role. The ist |O Com- 
mand is still in the formative stage 
and requires time to carve its niche 
in the much larger IW landscape. 


The trend toward increasing the 
number of special access programs 
(SAPs), highly sensitive projects 
that require exceptional security 
measures, is perhaps the best ap- 
proach. Ci personnel assigned to 
support a SAP could call upon the 
collective resources of highly skilled 
teams of area-specific cyber-Cl 
specialists to protect these most 
sensitive projects. As the scope of 
what needs protection and the num- 
ber and complexity of technologies 
increase, so should the number and 
specificity of cyber-Cl assets in- 
crease to deter, detect, and poten- 
tially exploit threat FISS activities. 
According to Bruce Schneier, “...as 
more and more aspects of our lives 
move into cyberspace, the demand 
for cyberspace security (and hence 
the demand for these experts) in- 
creases.”’ This “flex-up” concept 
maximizes the use of currently avail- 


33 








able Cl resources and provides for 
economy of force during the continu- 
ous expansion of technology and 
threat. 


Another approach to consider 
would be to centralize cyber-Cl as- 
sets in regional centers. We could 
collocate them with other national 
cyberintelligence investigative and 
operational units. 


To cope with the emerging 
cyberthreat, the Cl program will have 
to reorganize to meet this new de- 
mand. First, an immediate infusion 
of Cl personnel is necessary to fill 
the traditional positions neglected for 
many years. Secondly, Cl agents 
should first serve in assignments at 
lower echelons to indoctrinate them 
into the system in which they will 
serve. This entry-level period is nec- 
essary to evaluate and assess the 
agents, as well as to provide them 
an opportunity to develop the vo- 
cabulary and organizational under- 
standing to run investigations more 
effectively. Lastly, Cl must task- 
organize to concentrate on the skills 
and techniques necessary to ac- 
complish a particular type of highly 
specialized mission to counter the 
evolving threat. Each Cl assignment 
should last many years, and units 
should tailor them to their particular 
missions. The role of HUMINT col- 
lector should not be a responsibility 
of Cl agents. These changes would 
go a long way to refocus Cl to take 
up the new task and forge a new 
path in the cyber-landscape but 
many other changes will also be es- 
sential. 


Once we implement policy, the 
next basic building block is training. 
Therefore, the Army should imple- 
ment cyber-Cl training as a core 
competency of Cl at all levels. Cl 
agents must be as familiar with 
cyber-methodologies as they are 
with traditional FISS methods. Fun- 
damental skills, such as properly 
imaging media for forensics or net- 
work analysis, should be taught to 
all agents. The basics of networking 


34 





and media storage should be under- 
stood and updated regularly. Today, 
Cl has a few very specific areas of 
responsibility in the cyber-realm. 
Unfortunately, most Cl agents lack 
the degree of computer savvy needed 
to conduct beyond-user-level foren- 
sics and lack even a fundamental un- 
derstanding of networks. 


Generally, system administrators 
are the only ones with the neces- 
sary skills to monitor networks and 
keep a lookout for indicators of cyber- 
espionage but, sadly, with many this 
is merely an implied secondary func- 
tion. Most typically, a system admin- 
istrator who suspects there has been 
a compromise of classified informa- 
tion will call the regional Cl field of- 
fice, then that office in turn will 
forward the media to a Cl cyberlab 
for analysis. The lab uses tools and 
techniques that the Cl field office 
could employ with minimal re- 
sources and training. “Most learning 
is incidentaf® and people learn by 
doing without intentionally planning 
to do so. Pushing the basic cyber- 
investigations back down to field of- 
fices whenever possible better 
reserves the lab for unique or the 
more technical cyber-investigations, 
and keeps the field offices’ abilities 
viable. 





Defining the difference between 
system administrators, information 
security officers and Cl agents can 
be relatively simple. Units should call 
in Cl once they discover indicators 
of FISS involvement. Through tradi- 
tional institutional and education 
methods (e.g., Subversion and Es- 
pionage Directed Against the Army 
[SAEDA] briefings), Cl can continue 
to be instrumental in educating Army 
units on what these indicators look 
like, and foster a relationship encour- 
aging communication. Cl should con- 
tinue to evaluate all reported incidents 
and try to prioritize these threats to 
best deploy assets and identify defi- 
ciencies in the program. A unit could 
assign a Cl agent to a SAP to pro- 
vide continuity and immediate evalu- 
ation of all anomalies discovered. 


Cl cannot support the intelli- 
gence community in a vacuum; we 
must instead wire it in to the lat- 
est security products, vulnerabili- 
ties, and even the techniques used 
by hackers. Institutionally, the 
Army must develop a higher level 
of connectivity to improve collabo- 
ration with other agencies focused 
specifically on the cyber-Cl threat. 
It is not possible for any one 
agency to know about all possible 
cyber vulnerabilities, let alone pre- 





Military Intelligence 


on, 


pare an adequate response to all 
of them. The very essence of 
cyber-vulnerabilities and special 
tactics is the degree of secrecy 
they maintain. Once a vulnerability 
is known, Cl must quickly develop 
countermeasures to eliminate or re- 
duce its potency. Liaison is critical 
to establish a baseline of best prac- 
tices and to ensure the countering 
of a recognized vulnerability at one 
agency throughout all other agen- 
cies. Finally, we should simplify 
sharing the specifics of special col- 
lection techniques, applications, and 
products. 


Final Thoughts 


The bottom line is that the basic 
model of espionage remains the 
same, only the methods of collec- 
tion, transmittal, and communication 
have changed. Cl agents today must 
confront spies that potentially might 
never physically meet with their FISS 
handlers, as shown by the case of 
Robert Hanssen, one of the top Cl 
agents for the FBI, who successfully 
spied for the Soviets and later the 
Russians. During this time, he con- 
tinually sought ways to improve his 
electronic methodology. He used a 
Palm Ill personal digital assistant 
(PDA) to store and encrypt informa- 
tion that he would later give to his 
handlers. He used a simple tech- 
nique to transmit “data hidden on 
tracks not usually read by a com- 
puter.”® Robert Hanssen combined 
this effort with many traditional non- 
electronic techniques, such as 





markings, surveillance detection, 
and dead drops. 


He even checked his own classi- 
fied computer systems for his name, 
to include references made by 
Russia’s military intelligence 
agency, the Glavnoye Razved- 
yvateinoye Upravienie (commonly 
known as the GRU), and the Foreign 
intelligence Surveillance Act '° 
(FISA) court (the US court through 
which all surveillance’s must be ap- 
proved) for indicators that he was 
under investigation. “Hanssen was 
inventive, suggesting at one point 
that he trade in his Palm Ill for a 
wireless Palm VII, which he could 
use to send encrypted messages.” 
He had unique placement and ac- 
cess to a broad range of highly dam- 
aging information, and his knowledge 
of the methods to detect his espio- 
nage activity were unmatched. We 
can see that his basic methods of 
gathering and transmitting data are 
only the foreshadowing of the degree 
of sophistication to come. 


4 





Endnotes 


1. Campen, Alan D. and Dearth, Douglas 
H., Contributing Editors, Cyberwar 2.0: 
Myths, Mysteries and Reality (Fairfax, 
VA: AFCEA International Press, 1998), 
page 192 

2. Ibid, pages 168 and 169 


3. Schwartau, Winn, Information 
Warfare, Second Edition (New York, NY: 
Thunder's Mouth Press, 1996), page 537. 


4. Campen, Alan D., Dearth, Douglas H., 
and Goodden, R. Thomas, Contributing 
Editors, Cyberwar: Security, Strat- 

egy, and Conflict in the Information 





Age (Fairfax, VA: AFCEA International 
Press, 1996), page 96. 


5. Schwartau, Winn, Cybershock: 
Surviving Hackers, Phreakers, 
Identity Thieves, internet Terrorists 
and Weapons of Mass Disruption 
(New York, NY: Thunder’s Mouth Press, 
2000), page 45. 


6. Campen, Alan D. and Dearth, Douglas 
H., Contributing Editors, Cyberwar 3.0: 
Human Factors in Information 
Operations and Future Conflict 
(Fairfax, VA: AFCEA International Press, 
2000), page 132. 


7. Schneier, Bruce, Secrets and Lies 

(New York, NY: Wiley Computer Publish- 
ing, 2000), page 368. 

8. Campen, Dearth, and Goodden, page 
148. 


9. McCullagh, Decian, “Old Spy, New 
Tricks” (Wired, 2001) at http:// 
www.wired.com/news/politics/ 
0,1283,41950,00.htmi. 


10. Ibid. 
11. Ibid. 


Chief Warrant Officer Two Bobby Allen is 
a Counterintelligence (Cl) Special Agent 
assigned in investigative status and is the 
Information Assurance Security Officer for 
the Cyber-Cl Activity. He received cyber- 
investigations training with the DOD Com- 
puter Investigations Training Program and 
is a Certified Information System Secu- 
rity Professional (CISSP). Following his 
nine years enlisted service as a Cl Spe- 
cial Agent, some of his assignments as 
a Cl technician have included Operations 
Officer for the Ci section of the Joint 
Military Intelligence Battalion, Bosnia- 
Herzegovina, and Team Leader for the 
CI detachment at Eskan Village, Saudi 
Arabia. He is currently working toward 
completion of his Master of Science in Stra- 
tegic Intelligence (MSSI) degree with Ameri- 
can Military University. Readers can reach 
him via E-mail at bobby.allen@us.army.mil 
and by telephone at DSN 622-4875. 








Errata for “The Case for the MI Ranger” 

MIPB regrets editorial changes that impacted the intended meaning of Captain Thomas Spahr’s article in the 
April-June 2003 issue. In the Change in DA Policy Needed section, we printed: “... The exception to this 
policy is soldiers in the 96R and 98G MOSs. Some 96R soldiers can qualify for Ranger school; also, 98G 
soldiers can qualify if they sign up for the Special Forces.” This was incorrect; 96R soldiers cannot currently 
attend Ranger school, which was one of the major points of the article. 
Also, the introductory paragraph should have read: “Mi troops, in particular 98G Low-Level Voice Interceptor 
(LLVI) teams and 96R Ground Surveillance Radar (GSR)/Remotely Monitored Battlefield Sensor System 
(REMBASS) teams, can be an essential part of these combined arms reconnaissance efforts.” 

We apologize to the author for these errors. 


—The Editorial Staff 








July-September 2003 


35 








Cl in Information Operations: Enabling Operators 
and Defining Emerging Roles for Cl in Army IO 


by Chief Warrant Officer Two 
Jason L. Morton 


Army counterintelligence (Cl) aware- 
ness briefings have long identified 
espionage as the “second oldest 
profession.” Criminal trades have 
embraced 21st century technologies 
to further their efforts, as have the 
practitioners of espionage and intel- 
ligence. Cl, the intelligence disci- 
pline charged with identifying, 
detecting, exploiting, and neutraliz- 
ing foreign intelligence collection ef- 
forts, has begun to make strides into 
the 21st century information technolo- 
gies. However, we are behind the 
other elements of Army information 
operations (IO) in defining roles, mis- 
sions, and tactics, techniques, and 
procedures (TTPs) for how to oper- 
ate in cyberspace, the newest mili- 
tary operating environment. Many 
talented and innovative Cl Agents 
have begun developing ways Cl can 
provide value and additional depth to 
Army !O and technical Cl. Senior 
intelligence and Cl operators, man- 
agers, and leaders must now further 
define, capture, and formalize these 
efforts into policy, doctrine, TTPs, 
missions, and the necessary sup- 
port areas to bring Cl fully into the 
21st century and meet the threat in 
the new battlespace and operating 
environment. 


36 





Army Cl and human intelligence 
(HUMINT) functions and elements 
exist at all operational levels; our 
thoughts and actions on support 
to |O should be no different. 
HUMINT is part of this discussion 
since Cl and HUMINT use similar 
methodologies despite a distinct dif- 
ference in mission and implementa- 
tion. Many of the efforts in Cl support 
to |O have crossed discipline lines 
and involve HUMINT missions, such 
as document exploitation (DOCEX) 
and machine language-translation 
technologies. From a HUMINT per- 
spective, we have only scratched 
the surface. Therefore, one can chal- 
lenge the HUMINT community to 
analyze its tasks and missions and 
provide input on how it can apply 
what it does to IO, in terms the lO 
community understands, and lever- 
age technology to enhance mission 
efficiency. Currently, Cl elements in- 
volved in IO only exist at a few of the 
U.S. Army Intelligence and Security 
Command (INSCOM) theater intelli- 
gence brigades and groups (TIBs/ 
TIGs), and a few other separate 
elements. Most of these elements 
focus on investigations and investi- 
gative methodologies to support 
DOCEX of computer media. The 
Army should analyze and appropri- 
ately mature all functional areas of 
Cl and HUMINT to take full advan- 
tage of technology and fully identify 
exploitable information in whatever 
environment or medium our adver- 
saries operate. 


Intelligence and Cl are both vital 
support functions to |O under current 
doctrine as defined in FM 3-13, Army 
Information Operations Tactics, 
Techniques, and Procedures, but 
are not defined to the level of other 
“pillars” of 1O. Cl and HUMINT profes- 
sionals working in IO and technology 
have developed very progressive and 
solid methodologies and TTPs to 





accomplish emerging mission ar- 
eas. The 902d MI Group's Conti- 
nental United States (CONUS) 
Sub-Control Office (SCO) Handbook 
has addressed computer investiga- 
tions and Category 6 (Automation) 
Subversion and Espionage Directed 
Against the Army (SAEDA) incidents 
for several years. The Army is rolling 
most of that guidance into its G2 Cl 
Investigative Handbook, with some 
additions from other theater SCOs 
and Department of Defense (DOD) 
Law Enforcement Counterintelli- 
gence (LECI) agencies. 


The 513th MI Brigade and Defense 
Intelligence Agency (DIA) both have 
methodologies to support DOCEX of 
computer media. These references 
cover the “how” of investigations and 
operations at the most fundamental 
level—their existence is the basis for 
defining the requirements. These ref- 
erences have grown from a need by 
units in the field to document best 
practices for a recurring mission or 
task. Therein lies the requirement. 
Our adversaries are presenting a 
threat or operating in a new environ- 
ment in which we need to enter and 
operate to accomplish our respec- 
tive intelligence disciplines’ missions 
and tasks in support of intelligence 
and operations planning. 





Military Intelligence 


———_— 


——_— 


Although agents in the field have 
developed some great TTPs, current 
doctrine, policy, and guidance are 
scarce concerning Cl and HUMINT 
as they relate to 1|O. We must fill in 
the gaps to ensure these TTPs can 
be effective. Without policy, doctrine, 
and the senior- and executive-level 
programs and staff officers to sup- 
port these efforts, they will suffer. 
Mission efficiency degrades while 
operators are working to synchronize 
missions, define standards across 
commands, and the other tasks nor- 
mally handled by program offices and 
staffs. 


Once we have defined the basic 
requirements, the Army must think 
them through fully in terms of doc- 
trine, training, leader development, 
organizations, materiel, personnel 
and facilities (DTLOMS-PF), perhaps 
using an integrated concepts team 
(ICT) to do so. 


Personnel issues are the corner- 
stone to all other factors regarding 
this issue. A critical component for 
success of technology-based IO is 
a program to identify, recruit, train, 
retain, and provide career manage- 
ment for operators. Additionally, such 
a program must include the identifi- 
cation of mission areas, elements, 
training, and other factors to develop 
these capabilities fully for overall 
benefit to the Army. We must iden- 
tify and specially manage a core 
cadre of subject matter experts and 
technically qualified personnel out- 
side the traditional Army models to 
explore and establish these pro- 
cesses. The reason for this special 
management is that most assign- 
ments are from 24 to 36 months, af- 
ter which personnel rotate to different 
operational level assignments. For 
Cl, this normally equates to a tacti- 
cal-to-strategic-to-tactical cycle. 
Since there are no defined require- 
ments for missions spanning the 


July-September 2003 





operational levels, there is no real 
opportunity to allow the Army as- 
signments model to “grow” or “spread 
the knowledge” of these soldiers. The 
Army is not optimally using the 
money for training and the soldiers’ 
experience, since 24 to 36 months 
out of the technology field renders 
one’s skills, training, and knowledge 
ineffective in the operating environ- 
ment. The current trends in person- 
nel rotations and transitions will 
continue to hinder the efforts of trans- 
formation and developing a set of pro- 
grams to support commanders and 
operators at all levels. Stabilizing the 
right people (with the right skills and 
abilities) to develop the DTLOMS-PF 
considerations and follow-on recom- 
mendation documents is critical to 
providing relevant Cl and HUMINT to 
the Army. 


The use of technology enhances 
all four functional mission areas of 
Ci—investigations, operations, col- 
lection, and analysis and production. 
We also need to take into account 
our adversaries’ use of these tech- 
nologies. HUMINT, as well as Cl, 
needs to embrace technology as a 
tool fully and be prepared to use and 
exploit the employment of technol- 
ogy by our adversaries. These tech- 
nologies currently exist or are 
emerging at the national and strate- 
gic levels. However, Cl and HUMINT 
soldiers trained in the operation and 
exploitation of technology and as- 
signed at al! levels of the Army will 
only enhance the quality of the intel- 
ligence we provide to commanders 
and operators at every level. The 
nature of the threat and the locations 
where we react to the threat and 
engage our targets are not support- 
able by small, centralized elements 
of specially trained operators. 


With an understanding of technol- 
ogy, intelligence discipline fundamen- 
tals, supported unit mission, and 
their interrelations, both the techni- 
cal Cl agent and HUMINT specialist 
can conduct tasks in support of an 
all-source effort to support a local 
commander. The technical Cl agent 





could conduct a counterespionage 
investigation relating to foreign intel- 
ligence and security services’ use of 
digital methodologies and computer 
network operations. Meanwhile, a 
technical HUMINT specialist can 
execute digital media exploitation as 
a subdiscipline of DOCEX under ex- 
isting DOCEX TTPs, authorities, and 
reporting procedures. At an appro- 
priate time and after suitable analy- 
sis, this data may support efforts to 
protect our information and computer 
networks through Army Computer 
Emergency Response Team (CERT) 
computer network defense efforts, 
additional Cl or HUMINT operations, 
or form the basis for computer net- 
work operations target development. 
To reach the point where this is a 
reality, we must challenge ourselves 
and change prohibitive mindsets, 
practices, and outdated policy. The 
Army must do all of this while main- 
taining security, need to know, and 
sight of who we are supporting and 
why. 


The nature of the operating environ- 
ment and the threat require us to 
ensure the new technical and admin- 
istrative methodologies allow for 
speed. Espionage and other collec- 
tion operations are very hard to in- 
vestigate, because by their nature 
they are secretive and often applied 
with varying degrees of stealth. How- 
ever, we cannot use this rationale as 
an excuse to spend two months on 
an investigative subject's computer 
hard drive to determine if he was hid- 
ing information on it. A trained Cl 
agent using media forensics tech- 
nologies—coupled with the elements 
of espionage and known cases, in- 
cidents, and facts, as well as other 
intelligence—should be able to pro- 
duce information in a matter of hours 
or days to be considered usable in- 
telligence. In the realm of digital 
media exploitation, network incident 
investigations, and reactive Cl opera- 
tions, the timeline needs to be just 


(Continued on page 42) 


37 








Nonpassive Defense of the Army’s 
Computer Networks 


by Thomas G. King 


Imagine bringing the most powerful 
nation in the world to its knees with- 
out firing a shot. Imagine rendering 
the most powerful military force in 
the history of the world impotent with- 
out crossing your own border. Far 
fetched? According to a federal gov- 
ernment White Paper issued in 
1998: 


The United States possesses 
both the world’s strongest mili- 
tary and its largest national 
economy. ... Because of our mili- 
tary strength, future enemies, 
whether nations, groups or indi- 
viduals, may seek to harm us in 
nontraditional ways.... Our 
economy is increasingly reliant 
upon interdependent and cyber- 
supported infrastructures and 
nontraditional attacks on our 
infrastructures and information 
systems may be capable of sig- 
nificantly harming both our mili- 
tary power and our economy. ' 


The Internet is a series of host 
computers that store information and 
relay communications. The Internet 
evolved from a United States Depart- 
ment of Defense program called Ad- 
vanced Research Projects Agency 
Network (ARPANET) started in 1969. 
By the mid-1990s, the Army had dis- 
covered that the Internet was an ex- 
cellent tool for conducting its 
business. Consequently, the Army 
developed multiple networks and 
systems containing routers and serv- 
ers for electronic communications 
and provided desktop computers and 
Internet access to the vast majority 
of its workforce (military, civilian, and 
contractor). Since all of these com- 
puters can link to other computers 
literally anywhere in the world, any- 
one in the world has the ability to 
connect to Army computers. 


38 


Not only has the Army provided 
computers to its workforce but it has 
incorporated computers into its en- 
tire enterprise. Everything from 
weapons systems to payroll to mo- 
rale, welfare, and recreation activi- 
ties is dependent on computers. If 
these computers have access to the 
Internet, then potentially anyone in 
the world can access them. Before 
1998, the Army did not have an ef- 
fective method of detecting who was 
accessing these systems. 


Intruder Detection 

The Army “got religion” in 1998 with 
an event that has been labeled “So- 
lar Sunrise.” In February 1998, the 
United States was facing a military 
confrontation with Iraq. Although that 
confrontation did not occur, during the 
period of preparation for war, hack- 
ers launched an attack against com- 
puter systems in the Pentagon. 
Although investigation ultimately dis- 
covered that the attack came from 
teenagers, the incident revealed that 
the Army did not have any effective 
way to monitor outside activity within 
its systems and networks. 


The Army assigned the mission of 
creating an intruder detection sys- 
tem to what was then the U.S. Army 
Signal Command at Fort Huachuca, 
Arizona. The Army had already 
started to consolidate systems and 
networks, had created network op- 
erations security centers, and had 
just created a Computer Emergency 
Response Team (CERT) system to 
verify potential intrusions and protect 
against vulnerabilities. The Army 
Signal Command began to install in- 
trusion detection systems, and set 
up organizations aimed at protect- 
ing the Army's networks and sys- 
tems. The importance of network 
protection, among other things, has 
led to the creation of the Network En- 
terprise Technology Command/9th 


Army Signal Command (NETCOM), 
the Army’s single enterprise man- 
ager of telecommunications. Within 
NETCOM are the Army Network 
Operations and Security Centers 
(ANOSCs) and the theater NOSCs. 
The CERT system has also evolved 
under the 1st Information Operations 
Command (Land) to include the 
Army CERT (ACERT) and regional 
CERTs. 


NETCOM has the mission of de- 
fending the Army's computer sys- 
tems. It has installed and operates 
intrusion detection systems, and the 
ACERT works to protect against vul- 
nerabilities to the system. This ac- 
tivity falls within the concept of 
passive defense. The Army has long 
ago accepted the fact that a pas- 
sive defense is not an effective de- 
fense. The problem is to create a 
nonpassive defense of the Army's 
computer networks and systems 
within the constraints of the law. 


Nonpassive Defense 
Measures 

What are nonpassive defensive 
measures? One possible measure 
is to use “honey pots.” Honey pots 
are entities on a network or system 
that are likely to attract hackers or 
other intruders whose activities can 
then be monitored. There are many 
different types of honey pots, some 
purely defensive, while others are 
designed to gain information about 
the specific intruder. This type of 
honey pot is called a “research 
honey pot,” and this function sounds 
suspiciously like counterintelligence 
and law-enforcement activity, not 
service provider activity.*? Another 
method would be “attack sensing 
and warning.” This practice involves 
detecting and identifying the charac- 
terization of intentional unauthorized 
activity within a network or a sys- 
tem, to include attack- and intrusion- 


Military intelligence 


~~ 


related intelligence collection. This 
attack sensing and warning could 
target both inside the Army’s net- 
works and systems or out in the 
Internet itself. 


Applicable Laws 
and Statutes 

In considering a nonpassive de- 
fense, the Army needs to take into 
account a number of Federal stat- 
utes. The first is the so-called “Wire- 
tap Statute,” also known as the 
Electronic Communication Privacy 
Act (ECPA).° Under the wiretap stat- 
ute, the unauthorized interception of 
electronic communications and the 
use or disclosure of information ob- 
tained thereby is prohibited. This re- 
striction applies to the content of 
communications. Exceptions have 
been carved out for law enforcement 
with proper authority and the intelli- 
gence community with proper au- 
thority. An exception has also been 
created for the provider of the com- 
puter service, who can intercept, use, 
and disclose information “incident to 
the rendition of his service or to the 
protection of the rights or property 
of that service.” 


The service provider exception does 
apply to parts of the U.S. Govern- 
ment but not to the entire federal 
government. In a 1999 memo to the 
Department of Defense General 
Counsel, the Department of Justice 
(DOJ) stated unequivocally that the 
DOD was a service provider. How- 
ever, DOJ went on to say that com- 
ponents of DOD, such as law 
enforcement or intelligence, would 
not qualify as “service providers.”* In 
other words, the job function within 
DOD would determine whether or not 
the activity or individual would qualify 
as a service provider. AR 380-19, 
Information Systems Security, 
sets up both the network and sys- 
tems administrators and the CERTs 
as service providers. The next ques- 
tion would be whether the installa- 
tion and operation of a honey pot 
would constitute a valid service pro- 
vider mission. It does not. The pur- 


July-September 2003 


pose of a research honey pot is to 
attract intruders so the administra- 
tor can track them and keep them 
under surveillance. Although one can 
argue that this activity is “necessary 
incident to” protecting the rights and 
property of the service provider, the 
author thinks this is a weak argu- 
ment. Indeed, the DOJ has stated 
that “a Defense Department system 
administrator protecting his or her 
system may freely review both logs 
and content, and disclose the ini- 
tial information reviewed to law en- 
forcement...” [emphasis added].° 
Discovering and viewing initial hacker 
activity is within the scope of the 
service provider exception. A honey 
pot that did this could arguably be 
within the service provider exception. 
Aresearch honey pot, which attracts 
hacker activity and monitors it, does 
not fall within this interpretation. It 
is therefore outside the protection of 
the service provider exception. 


Another statute to consider at this 
point is the Foreign Intelligence Sur- 
veillance Act (FISA).® Under FISA, 
a person is guilty of a criminal of- 
fense if he or she intentionally en- 
gages in electronic surveillance 
under color of law without a statu- 
tory exception or a court order. The 
statute contains a long and involved 
definition of what “electronic sur- 
veillance” is but the bottom line is 
that it means targeting individuals 
and watching them through elec- 
tronic means. The statute applies 
to “any person” “acting under color 
of law.” This includes government 
employees. There are exceptions 
for law-enforcement agents acting 
under court order or intelligence ac- 
tivities operating with FISA warrants 
or other statutory authority. Setting 
up research honey pots that target 
or watch specific individuals or ac- 
tivities or to monitor activity within 
the system could violate this stat- 
ute. This statute is thus another fac- 
tor to consider in a nonpassive 
defense. 


If monitoring is to take place out- 
side the system, then a third stat- 


ute comes into play. This is the 
“Hacker Statute,” the Computer 
Fraud and Abuse Act.’ This statute 
would prohibit unauthorized access 
into a computer or computer system. 
If the Army seeks to carry on a 
nonpassive defense within another's 
computer or system, this would con- 
stitute a criminal offense by the Army. 
The service provider exception does 
not even contemplate this type of 
“defense.” 


Conclusion 

What should be clear at this point 
is that a service provider has a dif- 
ficult job in clearing legal hurdles 
to carry on nonpassive defense. 
There are, however, organizations 
existing within the Army which have 
the ability to obtain legal author- 
ity. This would be law enforcement 
(specificaily the Computer Crime 
Investigations Unit) and the Intelli- 
gence community. All of the cited 
statutes have exceptions for law 
enforcement and intelligence activi- 
ties, provided they obtain the 
proper permissions. Therefore, as 
the Army looks to nonpassive de- 
fense, it needs to build an effec- 
tive team between the service 
providers and the investigators, 
criminal and intelligence. It is this 
teamwork, exploiting the technical 
and legal capabilities of these dif- 
ferent groups, that will lead to ef- 
fective defense of the Army's 
computer networks. 





cdics 
= 


Endnotes: 


1. “The Clinton Administration's Policy on 
Critical Infrastructure Protection,” PDD 63, 
22 May 1998. 


2. Spitzner, Lance, Honeypots: Track- 
ing Hackers (New York, NY: Addison- 
Wesley, undated). 


3. U.S. Code (USC), Title 18, Crimes and 
Criminal Procedure, Sections 2510-2521. 


(Continued on page 48) 


39 











Intelligence in Support of 


Strategic Signal Units 


by James R. Lint 


The intention of this article is to fo- 
ment discussion and debate to im- 
prove the MI Corps. It is not the 
author's intention to beat up soldiers 
stationed in S2 shops of signal units. 
By asking questions, we can often 
garner future improvements to doc- 
trine and utilization of MI soldiers. 


Most of us would admit that it is 
traditionally the S2, particularly in 
combat arms units, who brings in- 
telligence to the commander, espe- 
cially intelligence pertaining to the 
unit's mission. After all, it is normally 
the S2 who— 


“J Ensures intelligence readiness. 

J Supervises the conduct of the 
intelligence tasks. 

Y) Performs intelligence synchro- 
nization. 

J Provides other intelligence sup- 
port such as: orders production, 
products, updates, advising the 
command, and Ml-unique de- 
confliction. 

“J Coordinates for counterintelli- 
gence (Cl) activities. 

“J Supports security programs. 


Background 

With most of the above responsi- 
bilities, those with experience in 
combat arms units would definitely 
state the S2 should provide that in- 
formation to the supported com- 
mander. However, in a signal unit, 
especially a strategic signal unit, the 
responsibility seems to shift away 
from the S2. Some S2s might 
respond that “we do not have the 
training, time, or people.” More dip- 


40 


lomatic responses might include 
“We are not staffed for this,” or 
something similar. However, the mili- 
tary and moral responsibility remains; 
it is imperative that there be no re- 
treat from the cyber-battlefield. 


Many of us have often seen S2s 
become irritated when the G2 passed 
intelligence directly to a brigade com- 
mander. (They are often officers of 
equal rank who live in the same 
neighborhood and attend the same 
meetings.) This sometimes “blind- 
sides” an S2 who did not have the 
information. Most would agree that 
the normal process is for intelli- 
gence—especially intelligence af- 
fecting the command—to flow 
through the command S2. However, 
often in computer network defense 
(CND) or cyber-matters, the S2s are 
not in the loop. Should they be the 
channel for cyber-intelligence or 
CND? Who should notify the com- 
mander that a node or router is un- 
der a hacker attack? Is the S2 in the 
“threat to systems” loop? Does the 
S2 provide the commander with an 
intelligence summary (INTSUM) that 
covers cyber-intelligence? Do military 
intelligence (MI) and S2s have the 
mission to conduct cyberthreat 
analysis in strategic (theater support) 
siqnal units? Are we actually ready 
to support a network-centric Army? 


Many will also say that the out- 
standing work done by the regional 
computer emergency response 
teams (CERTs), Army CERT, and the 
‘ist Information Operations (IO) Com- 
mand (formerly the U.S. Army Land 
Information Warfare Activity, or 
LIWA) is an intelligence job, and is 
all the intelligence product needed, 
desired, or required for support to a 
signal brigade. Should that informa- 
tion go through the S2 or directly to 
the S3 or network operation center? 


Should there be long-term analysis 
of cyber-indications and warning 
(l&W)? Should that information go 
to the S2 or S3? This author believes 
that there must be a change in the 
S2 office for the S2 personnel to 
support operations better, or a deci- 
sion must be made to give up the 
fight at the Brigade S2 level and 
“hope” for success. S2 soldiers and 
personnel require more training spe- 
cifically targeted to support cyber if 
they are to be effective in this fight. 
We see the Chinese military thought 
in a paper on “Information Warfare,” 
by Senior Colonel Wang Baocun 
and Li Fei published in Liberation 
Army Daily, 13 and 20 June 1995. 
The authors work at the Academy 
of Military Science, Beijing. There 
have been a few good papers trans- 
lated and put in public domain about 
the Chinese “new ideas in waging 
war.” We must be prepared for new 
methods in future wars. Luckily, the 
Chinese have put their ideas in pa- 
per and it is in public domain. 


f MIPB 


Lack of 
Specialized Training 

The lack of specialized training is 
not unique. Often, young intelligence 
analysts (military occupational spe- 
cialty [MOS] 96B) arrive at aviation 
units, where they must suddenly 
learn about air mobility corridors. 
(This is not something taught in 
great detail in their basic courses; 
they must learn it through unit train- 
ing for the unit’s specific mission.) 
When the junior 96B reports to an 
engineer unit, he must learn about 
engineer-specific tasks, such as 
river crossings, also in greater de- 
tail. We also see young 96B soldiers 


Military Intelligence 


move to strategic signal unit assign- 
ments where they must then learn 
the cyber- and signal threat. The U.S. 
Army is a tactical and strategic 
Internet service provider (ISP); how- 
ever, our junior intelligence analysts 
are not trained for supporting the sig- 
nal or cyber missions. 

In school, S2 personnei learn a bit 
about enemy electronic warfare 
(EW). They do not learn anything 
about prediction or |&W of a 
cyberattack on a strategic signal 
unit—mostly because there are no 
tracked indicators; the worldwide 
web facilitates global reach and 
anonymity with no advance notice 
of intent to perform malicious acts. 
If an infantry battalion in the 2d In- 
fantry Division is attacked and 
there were no intelligence warning, 
that would be an “intelligence fail- 
ure.” When a strategic signal unit 
is attacked and the systems ad- 
ministrations must take machines 
offline, reconfigure them, or rein- 
stall all software with overtime 
costs and lost mission time, that 
is a cost not only in money but also 
in mission readiness and effective- 
ness. Given the intelligence re- 
sources and support dedicated to 
protect the unit, why should we 
view this event as anything other 
than an intelligence failure as well? 


Many people question whether 
the S2 or intelligence analyst 
should be involved in the 
cyberthreat development work, 
which many often dismiss as “too 
hard to do.” Should we therefore 
withdraw from producing threat in- 
formation? The S2 is doctrinally re- 
sponsible for producing threat 
estimates and advising the com- 
mander on the types of threats that 
can attack the unit. Therefore, MI 
and the S2s in strategic signal 
units must undergo self-training to 
develop an understanding of the 
threat and to be able to discuss it 
intelligently with the supported com- 
mander. S2s often see this risky as 
when their raters are highly knowl- 
edgeable in cyber-matters. By fall- 


July-September 2003 


ing back to the status quo, the S2s 
do not have to worry about making 
errors due to lack of knowledge about 
the cyber-world, and they have more 
than enough missions without 
adding a “new” threat dimension of 
cyber-warfare. Signal units do not 
have many MI personnel. Often the 
battalions have extra signal sol- 
diers but few MI soldiers, so sig- 
nal soldiers have to learn a new 
career field and do the best they 
can. Primarily, they must perform 
the security manager and physical 
security missions. The brigade-level 
S2s will be busy enough with per- 
sonnel, information, and physical 
security, leaving no time to learn or 
develop tactics, techniques, and 
procedures (TTPs) aimed toward a 
significant threat to signal units: 
cyber-warfare. While the Army dis- 
cusses Transformation, the com- 
puter and cyber-world have actually 
transformed. Has the U.S. Army 
kept up with the ever-changing tech- 
nology and threats to that technol- 
ogy? Clearly not. More importantly, 
is it the responsibility of the signal 
unit S2, or is this level of detailed 
and specialized knowledge more ap- 
propriately the domain of the afore- 
mentioned strategic assets? 


One must be realistic and con- 
sider that not every analyst needs 
this training; units’ training budgets 
are already strained and time spent 
in training is time that the analysts 
are not working in their field. Hav- 
ing discussed the issues, the next 
step is formulation of viable alter- 
natives. 


Options for Improvement 


ASI. Creating an additional skill 
identifier (ASI) for all intelligence ana- 
lyst positions requiring cyberthreat 
specialized skills would be one so- 
lution. Such specialization (while 
necessary) is opposite the direction 
the U.S. Army is going with consoli- 
dating MOSs and cutting ASIs. The 
Army has shrunk and needs more 
“bang for the buck” with multiskilled 
generalists. 


Longer assignments for train- 
ing. This is an interesting idea, but 
not feasible Armywide, specifically 
in short-tour areas. In three-year sta- 
bilized assignments, this might 
work, or at least it could provide a 
partial solution. 


Reenlistment option with sta- 
bilization. This option would get 
motivated people who would be 
willing to make a commitment in 
return for the additional training. 
This might be the best option for 
units to maximize use of training 
dollars and, at the same time, have 
soldiers who may “go the extra 
mile” to keep current in the ever- 
changing technology field. 


Consolidation. This is pulling all 
MI personnel from the battalions to 
the brigade for a consolidated 
intelligence section. This option 
has potential for Combat Service 
and Combat Service Support units 
with few MI soldiers, often just a 
single MI soldier relegated to the 
personnel security and electronic 
personnel security questionnaire 
(EPSQ) mission. The Intelligence 
Analyst (MOS 96B) does not learn 
the EPSQ at school; who would 
perform it? Indeed, no MOS class 
learns this function. Since it is an 
administrative function, one could 
argue units should relocate this 
duty with the S1 and the Adjutant 
General Corps. By consolidating 
the 96Bs at brigade level, and push- 
ing the intelligence processing of 
the battlespace, INTSUMs, and 
other intelligence products back 
down to the battalions, the Army 
may achieve more efficient employ- 
ment of 96Bs. Today, the U.S. 
Army has the ability to push intel- 
ligence from brigade to the battal- 
ion. It is not necessary for 96Bs to 
be in the battalion to support it. 
After all, platoon, company, and 
battalion levels do not perform up- 
per-echelon maintenance. In main- 
tenance, the Army consolidates 
the function; why not also consoli- 
date intelligence? 


41 








Distance Learning. Analysts and 
other personnel assigned to a field 
that is radically new for them (cyber- 
warfare), regardless of age, could 
obtain certification and training via 
distance learning from either the In- 
telligence or Signal Centers. This 
seems to be the most cost-effective 
method, as web-based learning sites 
can easily update with new tech- 
nologies. 


Conclusion 

Whatever method or combination 
of methods are chosen, it is vital that 
the Army deliberately addresses the 
threat of cyber-warfare and properly 
trains intelligence personnel on this 


threat. At a recent briefing, the 
Deputy Commanding General, U.S. 
Army Network Enterprise Technol- 
ogy Command (NETCOM), dis- 
cussed situational awareness for 
the commander. As MI profession- 
als, we must always ask what we 
have done today to improve the 
commander's situational awareness 
of all threats. At the same time, plan 
on improving the commander's situ- 
ational awareness in the future. 
&. 


* 


James Lint (U.S. Marine Corps and U.S. 
Army, Retired) is an MI Corps Associa- 
tion (MICA) MI Corps Mentor. He has 25 
years of MI experience, covering the 





USMC, U.S. Army, contractor, and civil 
service. He is the moderator of two list- 
servers: S2_online and the Army Coun- 
terintelligence Discussion Group (http:/ 
/groups.yahoo.com/group/S2_online/ 
and http://groups.yahoo.com/group/ 
ACIDG-L/). He is currently the Deputy 
Director for Intelligence and Security, 
1st Signal Brigade, and was the Korea 
Information Assurance Manager- 
Intelligence, with the U.S. Forces, Ko- 
rea. J/G2 (USFK/8USA), Korea. His Mili- 
tary Assignments included Security 
Manager, 308th MI Battalion; Current 
Operations Noncommissioned Officer in 
Charge and S3 NCOIC, 524th MI Battal- 
ion; First Sergeant, Operational Support 
Detachment (OSD), 202d Mi Battalion; 
Cl Special Agent and Human Intelligence 
Assessment Team Chief, Joint Opera- 
tional Support Element, J2, Joint Task 
Force 160, Guantanamo Bay, Cuba. 





Cl in Information Operations 


(Continued from page 37) 


as fast. Proactive Cl operations may 
work on a more traditional timeline 
since they are not designed to re- 
spond to an immediate threat. How- 
ever, the environment of these 
operations—cyberspace—epito- 
mizes the asymmetrical and fast- 
moving field in which we must 
operate. 


Technology is a small part of this 
speed. We must streamline admin- 
istrative and management pro- 
cesses to enable the operators. 
The approval authority for most 
technical Cl operations is the Sec- 
retary of the Army or higher. Dedi- 
cated staff sections that would 
rapidly staff operational plans would 
help, as would a cyber SCO to man- 
age, deconflict, and synchronize 
streamline operations for the Army 
Central Control Office (ACCO) and 
the Army G2. The management is 
critical because there is no world- 
wide visibility on Army Cl interests 
in cyberspace. Dedicated “tactical” 
analysis is also crucial. The Army 
Counterintelligence Center (ACIC) 
produces some great products con- 
cerning IO from a Cl perspective. 
However, the ACIC is the Army's 


42 











strategic Cl analytical shop. The In- 
formation Dominance Centers at 
the TIBs/TIGs are better suited to 
provide tailored, relevant analysis 
to a theater and lower echelon 
commander. Changing how we in- 
vestigate and operate is important 
but we must also change the sup- 
porting elements. Changing how we 
provide analysis to and manage 
those investigations and operations 
further enhances investigations and 
operations in support of the overall 
intelligence effort. 


The Army is at a critical decision 
point in Cl and HUMINT concern- 
ing technology and support to IO. 
Do we continue the status quo or 
bring Cl and HUMINT into the fold 
on senior- and executive-level vis- 
ibility and guidance on IO and tech- 
nology issues? Formally stating 
requirements and implementing 
new and innovative ways to con- 
duct Cl and HUMINT operations in 
cyberspace and in support of IO will 
provide true value to Army intelli- 
gence. This requires policy, guid- 
ance, and programs in these areas. 
Radical changes aye not neces- 
sary. Simply analyzing what we do 
now and modifying how and where 
we do Cl makes a much more vi- 





able intelligence discipline in sup- 
port of all-source intelligence to 
support the Army’s operations. 


we 
as a 
CW2 Jason Morton is currently as- 
signed to the Saudi Resident Office, 
Field Office Southwest Asia, 202d MI 
Battalion, 513th MI Brigade. He previ- 
ously served as the Chief of Network 
Investigations and Future Operations for 
the Cyber-Cl Activity (formerly Informa- 
tion Warfare Branch), 902d Mi Group 
He has served several assignments in 
Europe and is a graduate of Advanced 
Foreign Cl Training Course (AFCITC), 
Computer Investigations Course for 
Special Agents (CICSA), Advanced 
CICSA (ACICSA), and several DOD in- 
vestigative and technology courses 
Readers may contact him via E-mail at 
jason.morton@us.army.mil 








Please Share 
Your Photographs 


MIPB is always looking for good 
photographs of Mi i 

at work. We would like action 
shots where possible and no 
“happy snaps.” Please take at 600 
dpi or better and send the photo, 
a caption with a full description, 
and identify the photographer. 
Thank you! 











Military Intelligence 


—- fe 


Bridging the Intelligence Gap in the Heartland: 
Evolving MI Roles in Support to Domestic 


by Major James Klotz and 
Lieutenant Colonel 
Michael French 


The views and conclusions in this 
document are those of the authors 
and do not necessarily present the 
Official policies or positions of the Fort 
Riley Criminal Investigation Division 
Battalion, U.S. Army Intelligence 
Center and Fort Huachuca, the 
Departments of the Army and De- 


The modern battlefield now extends 
to the heartland of the United States 
and into our own backyards. Clear 
distinctions between acts of crime 
and acts of war blur in the wake of 
these ruthless terrorist attacks. As 
we in the various intelligence com- 
munities respond to these now very 
real threats to homeland security, 
our nation calls us to perform many 
of our wartime missions domesti- 
cally in support to law-enforcement 
operations. Performance of these 
wartime intelligence missions inside 
U.S. borders has, of course, raised 
several concerns. These concerns 
are not aitogether new, having previ- 
ously arisen during the Civil War and 
Vietnam eras. 


Domestic military intelligence (Ml) 
operations are defined procedures 
detailed in regulatory guidance, such 
as Army Regulation (AR) 381-10, 
U.S. Army Intelligence Activities. 
Since 1975, Executive Orders 
(EOs) have been in effect to pro- 
vide our intelligence professionals 
with guidelines on how to perform 
their missions consistent with the 
legal rights and protections guaran- 
teed to all U.S. persons by our Con- 
stitution. President Ronald W. 
Reagan issued Executive Order 
12333, United States Intelligence 
Activities, in 1981, which is still in 


July-September 2003 


Criminal Threats 


force today. Department of De- 
fense (DOD) Regulation 5240.1-R, 
Procedures Governing the Activi- 
ties of DOD Intelligence Compo- 
nents that Affect United States 
Persons, implements Executive Or- 
der 12333 within the DOD and sets 
forth procedures governing the activi- 
ties of DOD intelligence components 
that affect U.S. persons. It states: 


The purpose of these procedures 
is to enable DOD intelligence 
components to carry out effec- 
tively their authorized functions 
while ensuring their activities that 
affect U.S. persons are carried 
out in a manner that protects the 
constitutional rights and privacy 
of such persons. 


The terrorist attacks of 11 Septem- 
ber 2001 did not cause a change in 
the EO; however, they have caused 
the intelligence communities to re- 
evaluate the limits imposed on do- 
mestic intelligence operations that 
affect their missions. Additionally, 
the ramifications of these attacks 
did prompt a clarification of proce- 
dures by the Army's Deputy Chief 
of Staff (DCS) for Intelligence 
(DCSINT) (now the DCS G2); in par- 
ticular, whether MI capabilities and 
resources might, in some way, be 
brought to bear in support of do- 
mestic law-enforcement opera- 
tions. This article chronicles the 
initiatives of one unit's effort to 
combine the talents and resources 
of the Army's M! community with 
those of the Army’s law-enforce- 
ment community. 


Doctrinal Issues 

The events of 11 September serve 
to identify a doctrinal “gap” between 
the roles, missions, and responsi- 
bilities of the MI and military law- 


enforcement communities. Despite 
both communities’ increased em- 
phasis on resolving these “discon- 
nects,” there remain a number of 
shortfalls and gray areas within 
Army-approved doctrine relating to 
police intelligence operations 
(PlOs), especially as it relates to 
the formalized processes for the 
collection of information and conduct 
of the Police Information Assess- 
ment Process (PIAP), and develop- 
ment of police intelligence products 
(PIPs). Given that the Army only re- 
cently (within the last five years or 
so) assigned military police (MP) 
and criminal investigation division 
(CID) elements the wartime tasks 
of police and criminal intelligence 
operations, this weakness in our 
doctrine is understandable. Doctrine 
often captures the lessons of the last 
“war.” However, in this area, doctrine 
is progressive and incorporates les- 
sons learned while the Global War 
on Terrorism is still on-going. 


Policy Note: Although doctrine has 
not traditionally addressed it, the 
U.S. Army Criminal Investigation 
Command (USACIDC) has had re- 
sponsibility to “collect, analyze 
and disseminate to affected com- 
mands criminal intelligence per- 
taining to threat activities in all 
of the last three versions of AR 


525-13, Antiterrorism 


Doctrinal Note: The introduction of 
Police Intelligence Operations was 
not intended to replace Military In- 
telligence, nor to subsume traadi- 
tional MI functions, duties, or 
responsibilities, nor to become a 
separate stovepipe organization 
A PIO pertains to strategic anal 
sis of operational and tactical po- 
lice operations provided to the 
commander and staff for decision- 
making 


43 








This is not to suggest there is no 
doctrine relating to MI’s role with 
respect to police and criminal in- 
telligence operations. MI and law 
enforcement have been collaborat- 
ing and performing these missions 
(and doing them well) for many 
years. Instead, the evolution of 
modern warfare has forced the 
Army to recognize the relevance 
of PlOs (and MI’s contribution to 
these operations) in modern mili- 
tary undertakings and not simply 
their combat support relevance. 
This recognition is now evident 
across the entire operational spec- 
trum, whether in peace-enforcement 
operations (as in the Balkans), in do- 
mestic force protection (FP) opera- 
tions (in which we are now fully 
engaged), or on the physical battle- 
field (as in Afghanistan). There re- 
mains the need for a coherent 
police intelligence doctrine that 
adds analytic rigor to our familiar 
processes, generates useful police 
intelligence products, and commu- 
nicates in terms supported com- 
manders are accustomed to hearing. 


Doctrinal Note: It is precisely with 
this in mind that ST 2-91.2, Intelli- 
gence Support to Installation 
Commander’s Handbook on 
Force Protection, is under devel 


nment 
4 . 


The Fort Riley, Kansas, CID Bat- 
talion, is attempting to address 
some of these doctrinal issues 
through a local initiative. The Crimi- 
nal Intelligence Management and 
Integration Center (CIMIC) may have 
far-reaching consequences. 


Doctrinal Note: The following is a 
local tactic, technique 
dure (TTP), not an approved doctri- 


nal solution 


and proce- 


Following 11 September, and with 
the active sponsorship of the 24th 
Infantry Division (ID) (Mechanized), 
the Riley CID Battalion initiated an 
effort to “mend the seams” in MI and 
criminal intelligence doctrine and 
TTPs, both within and among the MI 
and MP communities. The CIMIC’s 
aim is to improve the exchange of 


44 


information and gain greater synergy 
between critical FP functionaries in- 
cluding installation-level actors 
(e.g., G3s, directorates of plans, 
training, and security (DPTSs), pro- 
vost marshals, etc.) and federal, 
state, and local law-enforcement 
agencies (LEAs). To help facilitate 
this effort, the 24th ID (M) is taking 
a bold step forward into new terri- 
tory. In particular, the Division G2 
has attached an MI major (the co- 
author of this paper) full time to 
serve as the Battalion’s S3 for the 
specific purpose of providing sup- 
port to law-enforcement operations 
(not the typical MI S2 function). 
The expressed purpose of this first- 
of-its-kind arrangement is to apply 
time-proven MI analytical methodolo- 
gies and techniques (e.g., link 
analysis, intelligence preparation 
of the battlefield [IPB], etc.) to op- 
erational law-enforcement efforts. In 
so doing, the Division believes this 
effort will improve the ability of CID 
to gather, index, integrate, and ana- 
lyze criminal intelligence information 
for the purposes of thwarting crimes 
and catching criminals. 


Battalion CIMIC 


Here is how it works. The Riley 
Battalion’s CIMIC focuses on pro- 


viding support to local command- 
ers by organizing and integrating 
national, regional, and local police 
and criminal intelligence informa- 
tion. It also seeks to provide 
enough quality information to en- 
able installations to form a coher- 
ent, full-spectrum response to 
threats posed by terrorism, hate 
groups, extremism, gang activity, 
and a related lack of discipline, 
including illicit drug and firearms 
trafficking and use. 
CIMIC objectives are to— 


W) Improve criminal and police in- 
telligence support to installation- 
level commanders and help 
them tailor their FP activities. 

Q) Provide all the Battalion CID el- 
ements with a common opera- 
tional picture across the 13-state 
Fort Riley CID Battalion’s area 
of responsibility (AOR) (see Fig- 
ure 1). 

) Foster closer cooperation 
among local and regional LEAs. 

Q) Develop better intelligence rela- 
tionships with the MI community 
at each supported installation 
and its higher headquarters 
while trying to help make each 
installation safer and more se- 
cure. 





Fort Riley Battalion HQ 


Fort Riley RA 
78th MP Detachment 


Regional 


Perspective 








Key: 
BO - Branch Office 


HQ — Headquarters 





~ 


Fort Carson Rh _ 
48th MP DET (Case) WN 














~~ 


a 



















RA — Resident Agency 











\ DET — Detachment 
) 


Fort Leavenworth RA 


Saint Louis BO 








Fort Sill RA 
90th MP DET (Case) 





Fort Leonard Wood RA 








Figure 1. The Fort Riley CID Battalion’s AOR. 


Military Intelligence 


ow ee 


oe ee 


Figure 2 depicts criminal intelligence 
relationships at the local, regional, 
and national levels. At the installa- 
tion level, MP and CID operations 
are fairly well defined and practiced. 
Criminal intelligence operations at 
the national level are also reason- 
ably well established and integrated. 
However, one cannot say the same 
of the regional police and criminal 
intelligence operations performed by 
the MPs and CID. The Fort Riley CID 
Battalion formed, equipped, and 
staffed the CIMIC to fill this regional 
intelligence gap. 

After polling senior installation 
leaders across the Battalion’s AOR, 
some common themes emerged. 
Among them was the view that al- 
though the CID provided excellent 
investigative support and was very 
well-connected to the local law- 
enforcement communities (provost 
marshal offices [PMOs], staff judge 
advocates, and local command- 
ers), more work was necessary in 





National 


Regional 


— 
CIMIC 
Fort Riley 

CID Battalion 
ee 


Immediate + 


ACIR CIRs a> 


Local Local FBI | * 





CIMIC 
OTN feyties 











Key 
| FOUO -For official use only 
| HO - Headquarters 
USACIDC - U.S. Army Criminal 

















tallation Provost \ | 
Marshats 902d MI 
L ss | 2 - [ investigative 
. Ont installation Intelligence 
—— PUD Gaty Force Protection (Sharing only -— | 
. Fusion Cells No collecton for | 
Storage) ' 











section. 





Note: Part A is FOUO and is law-enforcement sensitive; Part B is a classified 











Figure 3. Information Flow. 


the police and criminal intelligence- 
gathering and crime-analysis ar- 
eas. Field commanders noted that 
they receive plenty of crime data 
but not enough useful information 
and analysis to support policy for- 





[ 




































































[ae]. soca: 
7 atu ute CID Command CDRs Updates Tancelaaarciicelal 
National wil CIRs, ALCIDs (SIPRNET) 
> Inputs 
| Military intel ” [oon 
‘nam | Lc] 
na —~ \ 
, ACIRs-- Local FBI sa —s — 
Regional Districtavide > CIMIC 
Raw Data& CRs ——. » 
| mies } http://www a” Fort Riley 
\ ceanenaienemen ' ore a ° CID Battalion 
Local G2/DPTS gees © 
~-----5 — a" ciID 
intet Resident Agency Legend: 
(902d Mi) cal FBI * - CIRs, Raw Data -- wae eae = 
cs - re : Fusion Cell Data | integration Center | 
= Secure Voice : 
bs “ investigative 
installation ‘ Intelligence 
| Force Protection « l : 
s Fusion Celts conedene Police Intelligence | 
“ty — Maunary itetigence 
DPTS : if | ". gaceiemiiaimiiedi: | <anaretenenmaeret 
nae Police inte y4 mw Enforcemer 
Installation PMO) | ” | t 
Key: GP — Group 
ACIR — Automated Criminal information Intel — Intelligence 
Reporting System NCIC — National Crime Information Center 
ALCIDs — All CID only (distribution) RISS — Regional Information Sharing | 
CDRs - Combat commanders System 
CiIRs - Critical information requirements SIOC — Strategic Information and 
DPTS'  - Directorate of plans, training, Operations Center 
security SiPRNET — Secure Internet Protocol Router 
FBI — Federal Bureau of Investigation Network 








Figure 2. Criminal Intelligence Relationships at the Local, Regional, 
and National Levels. 


July-September 2003 


mulation and decisionmaking. The 
CIMIC strives to provide the miss- 
ing information and analysis. 


Essentially, the CIMIC is an opera- 
tions center for collecting, integrat- 
ing, analyzing, and disseminating 
regionally tailored police and crimi- 
nal intelligence information. By le- 
veraging off-the-shelf technologies 
(€.g., personal computers, fac- 
simile machines [FAXs], and Internet 
access) and local installation sup- 
port—Fort Riley provides full-time 
Secure Internet Protocol Router 
Network (SIPRNET) access and MI 
manpower—the CIMIC acts as a 
CID regional criminal intelligence 
clearinghouse for the Midwestern 
United States. (To elaborate on this 
point, the CID directly distributes its 
criminal intelligence update to the 
FBI Joint Terrorism Task Force 
[JTTF], U.S. Bureau of Alcohol, 
Tobacco, and Firearms [ATF], and 
U.S. Drug Enforcement Agency 
[DEA] as well at the Kansas Na- 
tional Guard Bureau, highway pa- 
trol, and the Saint Louis Police 
Department. Indirectly, the installa- 
tion CID Resident Agencies (RAs) 
distributed the update to each local 
community.) 

The CIMIC enhances police and 
criminal intelligence support to in- 
stallation-level commanders by 


45 











2 








Commercial 





or 
1. 
| SO pia internet (.com) MILNET = 
[ FAX | STUB + Chat rooms * NCIC 1 
_|(Classified) © = - Web Sites - Regional Sites | 
\ | - IM sources - httpiwww 
| - Unclassified E-mail 
! 
MILNET SIPRNET g=} 
-ACIRs * USACIDC Updates | 
| Projection > [fy y - CIDNET -J2 & CDRs Updates 
ay : + http Awww. + Classified E-mail 


* Unclassified E-mail * (Full Period) 





is &) 








| Key: CNN — Cable News Network 








Figure 4. CIMIC Physical Layout. 


publishing a two-part criminal in- 
telligence digest three times a 
week. Figure 3 outlines the infor- 
mation flow. 

The regional update section cap- 
tures data relevant to the Battalion’s 
AOR based on analysis driven by 
the commander's critical information 
requirements (CCIRs) and priority in- 
telligence requirements (PIRs). The 
national update draws, from such di- 
verse sources as the— 


Y Joint staff and combatant com- 
manders’ updates. 

Q) 902d MI Group products. 

YW 24th ID (M) G2 summary prod- 

ucts (U.S. Forces Command 

and Ill Corps input). 

CID secure Internet (CIDNET). 

U.S. Army Criminal Investigation 

Command (USACIDC) critical 

information requirements (CIRs). 


Oo 


The district update draws from re- 
ports provided by the RA criminal 
intelligence submissions and instal- 
lation FP fusion-cell feedback, blot- 
ter reviews, local and regional FBI 
input, local 902d MI Group detach- 
ment input, and other raw-data 
analyses. Each intelligence entry 
cites the sources, and we generate 
and disseminate the product called 
the “criminal intelligence summary” 
(CRIM INTSUM) each Monday, 
Wednesday, and Friday. 

The CRIM INTSUM goes to CID 
offices and group headquarters via 


46 


SIPRNET and secure-telephone-unit 
lll (STU-IIl) facsimile (fax). CID offices 
use CRIM INTSUMs to “feed” instal- 
lation FP fusion cells at their regu- 
larly scheduled meetings. At the 
same time, local CID representatives 
draw fresh intelligence information 
from local sources and forward it to 
the CIMIC to initiate its next collec- 
tion, analysis, and integration cycle. 


Battalion CIMIC 


Configuration 

Figure 4 depicts the CIMIC’s con- 
figuration and capabilities including 
access to the SIPRNET, commer- 
cial Internet, and the installation’s 
military network (MILNET). MILNET 
provides access to a usual host of 
Capabilities, plus many essential 
Army information management (IM) 
systems to which the CID has ob- 
tained read-only access (e.g., En- 
listed Distribution and Assignment 
System [EDAS], Total Officer Per- 
sonnel Management Information 
System [TOPMIS], Defense Eligibil- 
ity Enrollment Reporting System 
[DEERS], etc.). Access to other web- 
based systems is aiso available 
including the civilian Regional Infor- 
mation Sharing System (RISS) that 
provides a regional view of civilian 
criminal intelligence information. The 
CIMIC is currently connected to both 
the Middle-States Organized Crime 
Information Center (MOCIC) permit- 
ting access to, and information- 
sharing with, the other five regions 


of the RISS network, and to the 
FBI’s National Crime Information 
Center (NCIC) providing access to 
a computerized index of criminal jus- 
tice information (including criminal- 
record historical information, 
fugitives, stolen properties, missing 
persons). Future capabilities may 
eventually include access to the 
Defense Finance and Accounting 
Service (DFAS). 


Conclusion 

The Fort Riley Battalion’s CIMIC 
is by no means a panacea for ame- 
liorating doctrinal shortfalls in crimi- 
nal intelligence operations. It does, 
however, serve to create conditions 
suitable for addressing some cru- 
cial challenges facing MI, MP, and 
CID elements as they respond to a 
rapidly changing battlefield environ- 
ment. Through the CIMIC, the Fort 
Riley CID Battalion, in close coop- 
eration with the 24th ID (M) G2, is 
striving to improve its criminal intel- 
ligence support to local command- 
ers and to examine new directions 
for further improvement. Many is- 
sues remain, but the CIMIC’s efforts 
serve to define them better and of- 
fer possible solutions. 


= 


Major Jim Klotz is the S3 of the Fort Riley 
CID Battalion. He holds a Bachelor of Sci- 
ence degree in Physical Geography from 
the U.S. Military Academy. He has served 
in a variety of military intelligence assign- 
ments to include S2, 937th Engineer 
Group; Combat Operations Officer in the 
Battle Command 8Battle Lab-Fort 
Huachuca; and the U.S. Army Central 
Command (USARCENT) Intelligence 
Center during Operations DESERT 
SHIELD and DESERT STORM. Readers 
may contact MAJ Klotz via E-mail at 
james.klotz@us.army.mil and telephoni- 
cally at (785) 239-8039 





Lieutenant Colonel Mike French is the 
Commander of the Fort Riley CID Bat- 
talion. He holds a Baccalaureate degree 
in Criminology from the University of 
Maryland, and Master of Business Ad- 
ministration and Finance degrees from 
Boston and Jacksonville State Universi- 
ties. Readers may write to LTC French via 
E-mail at michael.french@us.army.mil 


Military Intelligence 


—~— 


-—~— 


—_—— 


Cet Wow Golders Reach 
For Wenloument 


by Command Sergeant Major 
Lori L. Brown 


If you have been notified that you are 
deploying in support of one of the 
many operations in which our Army 
is currently engaged, welcome to the 
club. The companies busily prepare 
their units to load up their vans, jump 
on the “iron bird,” and touch down in 
their new home away from home. 
Wait! What did the noncommis- 
sioned officer (NCO) support chan- 
nel do to get the soldiers ready? Here 
are some ideas of how the 110th MI 
Battalion had our senior NCOs crack 
that nut. 


Promotions 


All soldiers in our Army truly be- 
lieve that they are going to get pro- 
moted. Every month before the 10th 
of the month, you process your 
semi-centralized promotion docu- 
ments, turn in DA Form 3355, Pro- 
motion Point Worksheet, and every 
month you hold or participate in a 
promotion board. Each of our Ser- 
geants (SGTs) and below put to- 
gether their “| Love Me” books to 
hand-carry on deployment. The First 
Sergeants (1SGs) quality controlled 
(QC’d) each book to verify all perti- 
nent data was there. This has saved 
our soldiers much pain and anguish. 
When the soldiers made the cut-off 
score, they knew that they made it. 
Their points are not suspended and 
they do not need to provide any 
documents to “prove” that they made 
their points after redeployment. We 
made sure that the soldiers would 
only have to go through this once. 
Our lower enlisted soldiers who com- 
pete for those ever-so-few waivers are 
also covered. Their 1SGs do not have 
to guess if they attended a school or 
completed correspondence courses, 
they know. Our commanders also 
know that they are selecting the best- 


July-September 2003 


qualified and the right soldiers for 
promotion. 


Equally important are the Central- 
ized Promotion Boards. The odds of 
deploying during one or more of the 
centralized boards are pretty good. 
We ran into the Sergeant Major 
(SGM) and Master Sergeant (MSG) 
Boards during the 110th’s deploy- 
ment. We ensured that all the Staff 
Sergeants (SSGs), Sergeants First 
Class (SFCs) and MSGs had a De- 
partment of the Army (DA) photo- 
graph taken before deployment. We 
did this early on so that the senior 
NCOs had an opportunity to QC the 
photos and provide feedback to these 
NCOs. Then we turned in the pho- 
tos to the Soldier Support Battalion. 


The remainder of this process be- 
comes easier as the U.S. Total Army 
Personnel Command (PERSCOM) 
gets all the Official Military Person- 
nel Files (OMPFs) online. We were 
not this fortunate. The SSGs, SFCs, 
and MSGs reviewed and updated 
their DA Forms 2-1, Personnel Quali- 
fication Record (PQR), and Enlisted 
Record Briefs (ERBs). Each of our 
NCOs, from lowest to highest, 
received their OMPFs and brought 
them on deployment. The 1SGs 
made the OMPF an inspectable item 
with the soldier’s readiness deploy- 
ment file. We did run into the prob- 
lem of having an antiquated microfiche 
reader but the process worked. We 
were confident that the NCOs would 
be able to process the required 
records and submit an accurate PQR. 


The one thing we should have 
done differently is work with the 
SGTs and SSGs early on before 
deployment, as soon after notifica- 
tion as possible. Most of their 
OMPFs needed a lot of attention, 
and those NCOs are not really sure 
what documents the OMPFs should 
contain. We could have solved it 


with an Noncommissioned Officer 
Development Program (NCODP) 
and then one-on-one sessions with 
the junior and senior NCOs. This 
works very well when the unit is 
scheduled for a rotation in a theater 
such as Bosnia-Herzegovina, 
Kosovo, or the Sinai. However, we 
have also executed this model in 
support of Operation ENDURING 
FREEDOM activities as individual 
backfill and unit deployments. The 
command sergeant major (CSM) 
and 1SGs can certainly work the 
schedule with the local photographic 
support section on the installation to 
get this imperative fulfilled. 


Counseling Files 

The company put the soldiers’ 
counseling files on the orderly rooms’ 
packing lists; it was vital during the 
deployment since the soldiers did not 
all deploy with their pre-deployment 
supervisors. There were so many 
instances where a soldier’s previous 
counseling was critical to making 
decisions about that soldier's as- 
signment within the task force or 
other decisions. We continued with 
our internal policy of providing 
monthly developmental counseling 
for the junior enlisted soldiers and 
quarterly counseling for the NCOs. 
The soldier's entire personal infor- 
mation file was essential to this 
success. The entire counseling file 
was also critical for those special- 
ists and sergeants in the primary 
zone for promotion who did not re- 
ceive recommendations. The coun- 
seling files assisted us in writing 
awards, noncommissioned officer 
evaluation reports (NCOERs), rec- 
ommendations for Audie Murphy 
and Major General Aubrey “Red” 
Newman boards, promotions, and 
even disciplinary actions. The coun- 
seling file is a must for the company- 
packing list. 


47 








NCOERs 


This area can turn into a crisis- 
action team situation and spin out 
of control in a hurry. Close out the 
NCOERs in advance of deployment 
where possible. We task-organized 
the Battalion in August for our No- 
vember deployment. This gave us not 
only three months to “team-build” but 
also some additional time at home 
station to close out the NCOERs. In 
the Battalion, we pretty much con- 
trolled our own destiny; however, we 
had more than 50 augmentees from 
seven different battalions. Not all of 
those NCOs received change of rater 
reports before departing their respec- 
tive home stations. Needless to say 
chasing NCOERs down kept the 
Personnel Sergeant, the 1SGs, and 
CSM busier than we intended dur- 
ing the first weeks on the ground. 
The lesson learned here is for all of 
us to do the change-of-rater reports 
before NCOs depart for any deploy- 
ment. 


Task Organizing 

As | mentioned briefly above, we 
task-organized for the mission three 
months prior to hitting the ground in 
Kosovo. This greatly enhanced our 
team-building efforts. It was important 
for the company chains-of-command 
to learn the names and faces of their 
“new” companies. We resolved many 
administrative tasks early on by 
these efforts. Our task organization 
date preceded our mission readiness 
exercise (MRE) by approximately 
three weeks. After completing the 
MRE, we remained in our task- 
organized structure. Now halfway 
through our deployment, we are plan- 
ning for the reorganization of the 
Battalion back at our home station. 


The reorganization will be extremely 
turbulent. We have received more 
than 50 additional soldiers since our 
departure. We essentially have two 
additional platoons to stand up in our 
general support company. It was 
imperative to reorganize one of the 
two direct support companies to al- 
low it to train for its upcoming Joint 
Readiness Training Center (JRTC) 
rotation. The Commander selected 
the reorganization date and the com- 
pany commanders and 1SGs know 
the structure, by name, of their post- 
deployment companies. We worked 
it far enough in advance to allow for 
the planning of NCOERs and train- 
ing events. The training piece is criti- 
cal. Now that the rear detachment 
companies know what the post- 
deployment structure looks like, 
they can train those teams so we 
do not dive in training proficiency 
because the teams have not jelled. 
The Commander and | feel very con- 
fident that the mission-essential task 
list (METL) proficiency will not de- 
grade. 


Training Files 

Simply having a “soft copy” of the 
training files is insufficient. Although 
our electronic training database files 
are extremely useful in tracking date 
of rank, weapon qualifications, physi- 
Cal training (PT) data, clothing sizes, 
etc., the electronic files are not a 
substitute for some of the “hard 
copy” documents found in the train- 
ing files, especially weapon qualifi- 
cation and Army Physical Fitness 
Test (APFT) Scorecards (DA Forms 
705). Hard copy weapon qualification 
sheets and APFT scorecards are re- 
quired for SGT and SSG promotion 
point computations. Each deployed 


company continues to conduct 
APF Ts, both record and diagnostic, 
so having the soldiers’ historical DA 
Forms 705 is essential. For the 
APFT-challenged soldier, the hard 
copy of the APFT scorecard is nec- 
essary to document multiple APFT 
failures in order to execute any type 
of administrative actions (bars to re- 
enlistment, administrative reduc- 
tions, etc.). When deployed, soldiers 
take APFTs, requalify on their as- 
signed weapons, become Combat 
Lifesaver-certified and recertified, and 
so forth. The company simply places 
the results in the existing training 
files, rather than creating entirely new 
training records that they would have 
to reintegrate with home station 
records after redeployment. 


Final Thoughts 

One more thing before | close. Get 
with your signal officer or network 
specialist and have that person 
download your E-mail and desktop 
files. We prevented much anguish by 
bringing home station E-mail personal 
folders with us. We also downloaded 
all of our relevant computer files on 
compact disc—this was an enor- 
mous help. Either transfer all of your 
files on a laptop or download them 
on disks; if you do not, you will be 
having someone from the rear send 


the files anyway. 





Command Sergeant Major Lori Brown is 
currently the CSM, 110th MI Battalion. She 
has held every leadership position from 
team leader to Battalion CSM. She previ- 
ously served as the 501st Mi Brigade S3 
Operations SGM, 502d MI Battalion Op- 
erations Sergeant, and spent four years as 
a First Sergeant. CSM Brown completed 
five overseas tours. She holds a Bachelor 
of Science degree from Regents College 
You can contact CSM Brown at lori.brown@ 
us.army.mil. 





Nonpassive Defense of the Army’s Computer Networks 


(Continued from page 39) 


4. Department of Justice Memorandum to 
DOD General Counsel, dated 11 August 
1999 


5. Ibid 
6. Title 18 USC, Sections 1801-1811. 
7. Title 18 USC, Section 1030. 


48 


Tom King is a Department of the Army Ci- 
vilian currently assigned to the Office of 
the Staff Judge Advocate, U.S. Army Net- 
work Enterprise Technology Command/9th 
Army Signal Command (NETCOM). Dual- 
hatted, he serves as both the Information 
Assurance Lawyer for the command 
and works computer law issues for the U.S. 
Army Intelligence Center and Fort 








Huachuca as well. He holds a Bachelor of 
Science degree from the University of Roch- 
ester, a Juris Doctor degree from Albany 
Law School, and a Master of Arts degree in 
History from the State University of New 
York (SUNY) at Albany. Readers may con- 
tact Mr. King via E-mail at thomas.g. 
king@us.army.mil and telephonically at 
(520) 533-3197 or DSN 821-3197. 


Military Intelligence 


—_~ie 


Intelligence and Electronic Warfare 


Tactical Proficiency Trainer 


by Captain Misty L. Martin 


The Intelligence and Electronic 
Warfare Tactical Proficiency Trainer 
(IEWTPT) program evolved in re- 
sponse to the need that the Active 
Army and Reserve Component tac- 
tical Military Intelligence (Ml) units 
had for a means to simulate an op- 
posing force battlefield realistically. 
A Headquarters, Department of the 
Army-directed study in 1980 ini- 
tially documented the inability to 
maintain the skills of Military In- 
telligence (Ml) soldiers in tactical 
units. The study concluded that 
units were neither conducting effec- 
tive training nor was the equipment 
available for the units to conduct 
training. In response to this need, 
the MI community produced a Train- 
ing Device Need Statement (TDNS) 
and an Operational Requirements 
Document (ORD). The lEWTPT ac- 
quisition will address these needs 
and requirements. 


The Training Device 

The IEWTPT is a “non-system” 
training device that provides real- 
istic battle command training 
through an integrated, distributed 
intelligence information environ- 
ment to primarily MI soldier opera- 
tors who drive the intelligence 
systems as well as battle com- 
manders and the battle staff. 
IEWTPT replicates the environ- 
ment that commanders will find on 
the future battlefield in scope, fi- 
delity, and information manage- 
ment requirements. It provides the 
ability for Ml commanders to con- 
duct individual, crew, collective, 
and unit training. 


IEWTPT Capabilities 

The IEWTPT consists of three 
functional groupings of capabilities 
referred to as the technical control 
cell (TCC), the target signature ar- 
rays (TSAs), and a supporting con- 
structive simulation. The TCC 


July-September 2003 


4pm» 


Re RN ere wT 





consists of sensor stimulators and 
emuiators that sample the environ- 
ment generated by the construc- 
tive simulation. The TCC networks 
the TSAs, coordinates scenarios, 
and collects after-action data. The 
TSAs are embedded into.or 
strapped on the intelligence and 
electronic warfare (IEW) opera- 
tional equipment that allows receipt 
and translation of the TCC feeds. 


Technical Control Cell. The TCC 
controls all IEWTPT training and 
communication between the con- 
structive simulation and the opera- 
tional intelligence processing 
systems. The control functions in- 
clude the following: 

Q) Segregating or linking the opera- 
tional intelligence processing 
systems to provide individual, 
collective, and unit-level training. 

Q) Collecting training data for after- 
action review (AAR). 

Q) Providing the constructive simu- 
lation with the status of the op- 
erational intelligence processing 
systems. 


Equally important, the TCC en- 
hances the constructive simulation 
run-time state variables to provide 
the data (content) to the intelli- 
gence processing systems as if 
the intelligence processing system 
were actually operational. The TCC 
interfaces with the instrumentation 
systems as required to support the 
training requirements. 

Target Signature Arrays. A TSA 
may be an embedded capability, a 


(IEWTPT) 


strap-on capability, or some combi- 
nation thereof, which injects the TCC- 
provided content into operational 
intelligence processing systems. 
The operator uses unit equipment 
to derive intelligence data con- 
text-sensitive to the battle com- 
mand constructive simulation and 
publish and deliver realistic out- 
puts to the same communications 
systems that would be used in 
time of hostilities or stability and 
support operations. The TSAs are 
dependent upon the successful 
development of the TCC to support 
connecting multiple TSAs for large 
Mi scenarios. The IEW System 
Program Managers are respon- 
sible for the development of the 
TSAs. The lIEWTPT will stimulate 
up to ten different TSAs. 


Constructive Simulation. The 
constructive simulation provides 
run-time state variables from an in- 
tegrated constructive training simu- 
lation. Run-time state variables at 
a minimum include the following: 


J Platform position, velocity, vec- 
tor, status, and state for all enti- 
ties. 

YW) Synthetic natural environment 
(SNE). 

) Status of the command and con- 
trol, communications, comput- 
ers, and intelligence systems 
used to connect the construc- 
tive simulation to the training 
audience. 


The run-time state variables describe 
the context for both the constructive 
simulation and IEWTPT to collect 
entity data from which they can de- 
rive intelligence. 


IEWTPT Development 


The IEWTPT program comprises 
three blocks—Block | is the Initial 
Operational Capability (lOC), 
Block II is an interim capability, and 
Block Ill is the Final Operational 
Capability (FOC) (see Figure 1). 


49 











IEWTPT Schedule 





FY07 FY08 FYOS TOTALS 








| Systems Design Review 
| TCC Development/integration 


FY02 FYO3 FYO4 FYOS FYO6 
QTRS 1/2/3)/4 7/2/3/4 1/2/3/4 7/23/44 W/Z2l/Sl4 WIZj3l4 W/2l3j4 11/2/35 4 
System Dev & Demo 
MILESTONES: 
Contract Awarded A Nov 28, 2000 


A. Dec 11-13, 2001 


PRODUCTION 





|Intel Software Design Review 
|Hardware Design Review 

lIncr 2 Software Design Review 

LMI Data (intial Spares) 

lTest Readiness Rewew w/ Customer 
\Training Situation Document 

[Training Progam Structure Document 
|OT&E events 

|Operating Training (7 days) 

INew Equipment Training (NET) (7 days) 


i yy ‘ 
|Doctrine and Tactic Training (DTT) (w NET 


Software Users Manual (SUM) 

} 

|NOT&E Testing 

llOT&E System Evaluation Report (SER) 


t 04) 


Operator's Manual 


Milestone C (Oc 


Maintenance Manua@ 


MR/OC FT Huachuca (Oct - Nov 04) 
|LCCS Maintenance Report 
|Production Contract Award 


\Field NTCGIFT Hood, Tx 
\Field IRTC/FT Bragg, NC 
|Field CMTC/FT Lewis, WA 





¥ Corps 
} 


FOC 


\Tactics, Techniques, and Procedures (TTP) Training (w NET) /\ 


J ja- Ang 2003 (60 days Prior to DT&E) 
Z\ Ang - Sep 2003 (30 days Prior to DT&E) 
PAN Sep - Oct 2003 (Installation and testing at FT Huachuca) 

Z\ Nov - Dec 2003 (Training Support Package 30 days prior to each training course) 
Nov - Dec 2003 (Training Support Package 30 days prior to each training course) 

\instructor and Key Personnel Training (IKPT) (3 days) /\, Nov - Dec 2003 (Training Support Package 30 days prior to each training course) 

Nov 
Nov 


L\ 


> 


/\ Jan-Feb 2004 
/\ Sep 2004 
yr Oct 2004 


A Sep - Oct 2004 (30 days prior tw IOC and 30 days prior to system acceptance) 
A Sep - Oct 2004 (30 days prior t [OC and 30 days prior to system acceptance) 


Fe Oct - Nov 2004 
¢ 


- Dec 2003 (Training Support Package 30 days prior to each training course) 
Z\ y - Dec 2003 (Training Support Package 30 days prior to each training course) 
Dec 2003 & Mar 2004 (30 days prior to IOT&E and 30 days after OT&E) 





¥% Jan 2005 


AV L\ Sep & Nov 2005 
AJA Aug & Oct 2006 





The lOC phase of the IEWTPT pro- 
gram receives run-time state vari- 
ables from the Tactical Simulation 
(TACSIM) that originated from ei- 
ther the Corps Battle Simulation 
(CBS) or the Joint Conflict and Tac- 
tical Simulation (JCATS) construc- 
tive simulations. This includes the 
stimulation of three different TSA’s 
intelligence sensors and collectors 
simultaneously. 


Y) Joint Surveillance Target Attack 
Radar System (Joint STARS) 
Target Acquisition subsystem: 
Common Ground Station (CGS) 
(AN/TSQ-179 (V)). 

W) Tactical Unmanned Aerial Ve- 
hicle (TUAV) including the 
Ground Control Station (GCS). 

Y Tactical Exploitation System 
(TES) and Distributed Tactical 
Exploitation System (DTES) 
(TES/AN/TSQ-219 (V) sys- 
tems). 


50 


7\ G0 days after 10C until FOC) 


Aug & Oct 2007 
\ Aug 2008 











x 





The Block Il IEWTPT builds on 
the |OC capabilities and adds an- 
other intelligence discipline. Block 
lll, or the FOC phase of the IEWTPT 
program, builds upon Blocks | and II 
capabilities but replaces the TACSIM 
from CBS or JCATS with the Army's 
Objective Constructive Simulation 
Driver. It receives run-time state 
variables from the Constructive 
Driver integrated constructive simu- 
lation, and provides a realistic tar- 
get environment for the imagery 
intelligence (IMINT), signals intelli- 
gence (SIGINT), human intelligence 
(HUMINT), and measurement and 
signatures intelligence (MASINT) 
TSAs. 


Final Thoughts 

The Army will field the IOC IEWTPT 
TCC system at Fort Huachuca, Ari- 
zona. It will field the FOC system 
with up to seven additional units as 
needed. 


The lEWTPT meets critical train- 
ing needs. It will allow maneuver 
commanders to train with “real” in- 
telligence. The Intelligence battle- 
field operating system staff will 
train analysis and fusion skills, not 
simply pass messages generated 
by the constructive simulation, and 
it will stress the intelligence, sur- 
veillance, and reconnaissance op- 
erators by providing an abundance 
of information from systems whose 
assets are usually too expensive 
for training or otherwise tasked. 


The IEWTPT enables realistic 
battle command training through 
simulation, stimulation, and presen- 
tation of joint and Army intelligence 
capabilities. The trainer supports 
future systems with the ability to 
interoperate with the Distributed 


(Continued on page 68) 


Military Intelligence 


CGS and Apache-Longbow Linkage— 
A 2d Infantry Division Initiative 


by First Lieutenant Christine V. 
Fallon, Staff Sergeant 

Steven D. Jaime, and 
Sergeant Tony Donaldson 


The Common Ground Station (CGS) 
is a receiver-processor of Joint Sur- 
veillance Target Attack Radar Sys- 
tem (Joint STARS) data. The CGS 
provides a visual display of this data 
correlated against a map back- 
ground. In addition, the ground sta- 
tion receives imagery, synthetic 
aperture radar (SAR) data, and video, 
allowing U.S. and allied maneuver 
forces an early look at the activity of 
the second, third, and follow-on 
enemy ground forces. By simulta- 
neously receiving, processing, and 
displaying multiple intelligence 
sources on a digitized map back- 
ground, the CGS system provides 
input to the “now battle picture” of 
the battlefield for commanders. In- 
herent in CGS is the flexibility to pro- 
vide tailored intelligence collection for 
lethal targeting by field artillery and 
attack aviation assets. This unique 
system also provides battle manage- 
ment, surveillance, targeting, and in- 
terdiction support for development and 
execution of plans and orders with 
near-real-time correlated information. 


Background 
of the Initiative 

Until recently, the system has had 
limited success supporting com- 
manders’ requirements in operations 
close to the forward line of own 
troops. This is primarily because 
Joint STARS is unable to discern 
enemy targets from friendly targets. 
The 2d Infantry Division (2 ID) in Ko- 
rea recently experimented with ra- 
dar data flow from the Apache 
Longbow to CGS. This information 
supplements the shortfalls of the 
Joint STARS. While attributed to the 
system during acquisition, this ca- 
pability was not a reality until recently. 


July-September 2003 


Through the 2 ID initiative, contrac- 
tors rewrote the software, and the 
team achieved CGS information 
transmission to the Apache 
Longbow, a close-combat asset. The 
Common Ground Station's digital 
datalink with the Longbow will pro- 
vide units throughout the division with 
more detailed intelligence of the close 
threat. This initiative also has the 
potential to increase survivability of 
the aircraft by providing the Longbow 
possible early warning of known en- 
emy air defense artillery (ADA) emit- 
ters. The system complements 
information flowing from the Division 
Analysis and Control Element (ACE) 
through the unit Analysis and Con- 
trol Team (ACT), increasing combat 
effectiveness by allowing the 
Longbow to pian ingress and egress 
routes to targets better. 


September 2002 
Linkage Exercise 

During an exercise on 26 Septem- 
ber 2002, elements of the 102d Mili- 
tary Intelligence Battalion and ‘1st 
Battalion (Attack), 2d Aviation Regi- 
ment, successfully linked the CGS 
with software version CSB 1.B11.1, 
IDM 2.9H to an airborne Apache 
Longbow with software version LOT 
6, IDM 2.9H. The first step was to 
establish voice communication us- 
ing ultra-high frequency (VRC-83) and 
very-high frequency (VRC-92/RT- 
1523E), secure and nonsecure. The 
team accomplished this using the 
CGS’ mounted vehicular antennas 
and both tail- and belly-mounted an- 
tennas on the Apache. External mast 
antennas were not necessary—as 
previously thought by contractors— 
to establish and maintain a suc- 
cessful two-way link between the 
CGS and the Apache Longbow. 


During the initial phase of our tri- 


als, the CGS could only receive fire- 
control radar (FCR) targets and 


digital plain text messages but could 
not send information to the Apache. 
Contractors then made permanent 
modifications to the CGS software 
based on controlled environment 
testing performed by two contract 
tirms on 18 September 2002. On 
site, contractors extended the peri- 
odicity of the present position query 
(PPQ) from 30 seconds to 2 minutes. 
The PPQ allows the CGS to track 
the telemetry of the aircraft and is 
required for a successful link with the 
Apache. However, the CGS still 
could not establish a link. During our 
initial tests, we used plain text and 
single-channel data as per contrac- 
tor guidance. However, the key to 
success was to switch from plain 
text to enciphered text as well as 
frequency-hopping mode. 


Once all changes were complete, 
the CGS was able to communicate 
digitally with the Apache, sending 
free text and FCR messages, estab- 
lishing a successful link. Testers ini- 
tially achieved the link with the 
aircraft on the ground, providing con- 
trolled conditions (line of sight [LOS] 
and unobstructed communication). 
Once this was successful, we con- 
nected with an airborne Apache. This 
communication was the first be- 
tween the CGS and an airborne 
Apache Longbow using the previ- 
ously mentioned software configura- 
tions. After achieving success, we 
broke and reestablished the datalink 
several times to ensure consistency. 
The Apache was airborne for ap- 
proximately one hour and traveled 
roughly two kilometers away from 
the CGS during the flight. 

Having established a successful 
datalink, the CGS was able to send 
the Apache Longbow both FCR and 
digital plain text messages, as well 
as Airborne Reconnaissance Low 
(ARL) imagery previously archived in 
the CGS database. The datalink al- 


51 








lowed the aircraft's telemetry to be 
displayed, thus enabling the CGS 
operators to track the flight path 
of the Apache. The ability to track 
the aircraft's telemetry is vital to ef- 
fective operations between the CGS 
and the Apache. If the CGS opera- 
tor has the ability to see where the 
Apache is and what it is looking at 
through the FCR, then the operator 
can send additional target informa- 
tion the Apache’s FCR is not show- 
ing. 

The aircraft's combat effectiveness 
and survivability also increases due 
to the CGS operators’ ability to iden- 
tify and pass on suspected air de- 
fense artillery (ADA) and surface-to- 
air missile sites. The more informa- 
tion that we can provide to the air- 
craft, the better they will be able to 
plan future attack missions or alter 
ongoing operations. According to 
Colonel James E. Moentmann, 2d 
Aviation Regiment Commander, the 
greatest value to the Longbow and 
aviation brigade is in the pre-mission 
planning phase. For example, the 
CGS can provide updated site data 
before occupying an attack-by-fire 
position or before departure on a 
movement to contact. 


Using the Apache Longbow to 
gather data while performing stan- 
dard attack operations provides 
commanders with close-combat 
intelligence and increases the sur- 
vivability of the aircraft. The most 
likely scenario is that the Longbows 
will pass data at the end of a mis- 
sion as they are rotating off station 
and conducting a battle handover to 
another team, with the likely prod- 
uct being a “shot at” file or the last of 
very many radar snapshots. How- 
ever, with the first attempt at an aerial 
link established using the current 
software, we identified some limita- 
tions. The greatest limitation is that 
the CGS is an LOS system. The 
Longbow does not have the standoff 
distance of ARL or the E-8 (Joint 
STARS) aerial intelligence platforms. 
It can, however, provide short-range 
radar imagery that we can confirm 


52 


with products gathered from other 
sources. Because the CGS is an 
LOS-based system, maintaining a 
link for an extended period may be a 
problem. Developing a retransmis- 
sion system for the CGS would be a 
possible solution. 

To truly be effective to the supported 
unit, the CGS crews and Apache 
Longbow units must develop a work- 
ing relationship. They need to under- 
stand the capabilities and limitations 
of the two systems. 


Brigade CALFEX 

Since the exercise with 1-2 Avia- 
tion in September, the 102d MI Bat- 
talion participated in a brigade 
combined arms live-fire exercise 
(CALFEX) with 1-2 Aviation and 4-7 
Cavalry, also of the 2 ID. Rather than 
working directly with the subordinate 
units, the Division integrated the 
CGS into the Aviation Brigade com- 
mand and control element, again 
successfully linking the two sys- 
tems. During this exercise, the CGS 
was able to receive “shot at” files, 
which can assist in calculating battle 
damage assessments. The CALFEX 
showed that although a free-text fea- 
ture is available, the pilots did not 
often use it; this is simply because 
talking on the radio is considerably 
faster than one-handed typing of 
messaces in the aircraft, particularly 
given the workload in the cockpit. 


Final Thoughts 

The 2d Infantry Division continues 
to expand on the CGS-Apache 
Longbow initiative. Allocation of the 
five CGS systems currently in the 
Division is to the Division main and 
tactical command posts, Aviation 
Brigade, 1st Brigade, and 2d Brigade. 
The Army was shortsighted in not 
providing a sixth system to support 
the targeting requirements of the di- 
vision artillery. With the unmanned 
aerial vehicle (UAV) fielding this com- 
ing year, the Division will continue to 
expand on the intelligence capabili- 
ties of the CGS system. The CGS 
is a relatively new asset to 2 ID and 
the Army; therefore, MI units must 


take the responsibility of integrating 
this system into brigade and division 
tactical operations centers and other 
units that would benefit from this 


technology. si 
= 


x af f mime 1A — > —_—— = 
Sergeant Jessica Ward and Speciaiist 





Michael Thornton also contributed to 


this article 


First Lieutenant Christine Fallon earned a 
Bachelor of Arts degree in Telecommuni- 
cation from Penn State University and a 
commission in Intelligence through the 
Reserve Officer Training Program. She 
graduated from Airborne School and the 
Military Intelligence Officer Basic Course 
1LT Fallon is currently a Platoon Leader 
with B Company, 102d MI Battalion, 2d In- 
fantry Division, Korea. Her next duty sta- 
tion will be the 902d MI Group, Fort George 
G. Meade, Maryland. Readers may contact 
her via E-mail at christine.fallon@us 
army.mil. 


Staff Sergeant Steve Jaime joined the Army 
in October 1991 as a Fire Support Spe- 
cialist (13F). His previous assignments 
have included Fort Sill, Oklahoma; Ger- 
many; Hawaii, and Fort Lewis, Washing- 
ton. After reclassification as a Common 
Ground Station (CGS) Operator (MOS 
96H) in August 2002, SSG Jaime relocated 
to Korea where he serves with the 2d Infan- 
try Division. He has attend military schools 
including Advanced Field Artillery Tactical 
Data System (AFATDS) and Air Ground 
Operations System (AGOS) training, the 
Primary Leadership Development Course 
(PLDC), and the Basic Noncommissioned 
Officers Course (BNCOC). Readers may 
contact this author via E-mail at steven 
jaime@us.army.mil 





New MIPB Mailing 
Address 


Due to a recent reorganization 
and in accordance with the Of- 
ficial Mail Address Standards, 
Military Intelligence Profes- 
sional Builetin’s new address 
is: 


U.S. Army Intelligence Center 
and Fort Huachuca 

ATTN: ATZS-FDT-M 

550 Cibeque Street 

Fort Huachuca AZ 85613-7017 











Military Inteliigence 


Global war on Terrorism: 


Polygraph—An Intelligence Tool 


by Chief Warrant Officer Three Joe Don Castleberry 








Photos courtesy of the 902d MI Group 


On 31 March 1998, in United States 
v. Scheffer’ a divided U.S. Supreme 
Court held that either side could ban 
the results of a polygraph examina- 
tion from use in a criminal trial be- 
cause there is no consensus that 
polygraph evidence is reliable. The 
Court found that the scientific com- 
munity and the state and federal 
courts are extremely polarized on the 
matter. Five of the concurring and 
dissenting justices noted that: 


There is much inconsistency be- 
tween the Government's exten- 
sive use of polygraphs to make 
vital security determinations, and 
the argument it made in that case 
stressing the inaccuracy of these 
tests. 


The majority of the Court found noth- 
ing inconsistent, however, in the 
Government's use of the polygraph 


July-September 2003 


A polygrapher reviews a result sheet f 


for personnel screening and as a tool 
in criminal and intelligence investi- 
gations because, it said, such lim- 
ited out-of-court uses of polygraph 
techniques differ in character from, 
and carry less severe consequences 
than, the use of polygraphs as evi- 
dence in a criminal trial. 


The Court noted that between 1981 
and 1997, the Department of Defense 
(DOD) conducted more than 400,000 
polygraph examinations. Justice 
John Paul Stevens in a dissenting 
opinion supported its use by DOD, 
because, he said, its polygraph ex- 
aminers were trained at its own Poly- 
graph Institute, “which is generally 
considered the best training facility 
for polygraph examiners in the United 
States.” The Supreme Court's opin- 
ion has put to rest any argument 
against the continued use of this 
technique as a tool in national secu- 
rity investigations. 





at 


rom an interview. 






The Army Leads the Way 


The Polygraph Branch, 310th Mili- 
tary Intelligence (MI) Battalion, con- 
ducts counterintelligence (Cl) scope, 
polygraph screening examinations 
in support of DOD Special Access 
Programs, the Department of the 
Army (DA) Cryptographic Access 
Program, and the National Security 
Agency (NSA) on a routine basis. In 
addition, polygraphers conduct op- 
erational examinations in support of 
offensive Cl operations, Cl and coun- 
terespionage (CE) investigations, 
and counterintelligence force protec- 
tion source operations (CFSO). With 
the current Global War on Terrorism 
and other significant events occur- 
ring throughout the world, the mis- 
sion continues to increase. During 
the last fiscal year, the Branch con- 
ducted more than 1,100 Cl-scope 
polygraph screening examinations 
and nearly 70 operational examina- 
tions. These numbers will likely in- 
crease dramatically in the near 
future. 


The Army will continue to lead the 
way when using polygraphs in the 
tactical arena. U.S. Army examin- 
ers were the first polygraph person- 
nel to go to Guantanamo Bay, Cuba, 
and Kandahar and Bagram, Afghani- 
stan, pursuant to the war on terror- 
ism and the search for Osama bin 
Laden (see Figure 1). While other 
agencies waited to see if polygraph 
examinations would yield favorable 
results in such an environment, Army 
examiners proved they could, con- 
ducting sensitive examinations to 
determine the veracity of information 
reported by known or suspected 
Taliban and al-Qaeda members. In 
one instance, use of the polygraph 


53 








Suspected tervoriat is escorted to 
the interrogation facilities at 
Camp X-Ray. 


nullified a significant biological weap- 
ons threat while in another it aided 
the State Department by clearing one 


of our allies of direct involvement with 
al-Qaeda. !t has also cleared some 
individuals of direct involvement 
with al-Qaeda and allowed com- 
manders to employ available as- 
sets better. 
Expanding Use 
of the Polygraph 

As an investigative aid, the poly- 
graph has helped investigators in 
closing many investigations. In 
cases where the Army requested a 
polygraph test, the polygraph exami- 
nations have either proven or nulli- 
fied numerous allegations. This has 
led to a significant increase in the 
number of requests received by the 
310th MI Battalion. In the screening 
environment, use of the polygraph 
has identified numerous security con- 
cerns and possible threats on a con- 


tinual basis; on several occasions, 
examinees have admitted to having 
classified or sensitive information out- 
side government control. The poly- 
graph has identified these potential 
threats and led to recovery of the in- 
formation. 


The DOD is continuing to expand 
the use of the polygraph because of 
its proven benefit. The 902d MI 
Group’s polygraph examiner person- 
nel strength may increase from the 
current ten examiners to twenty-five 
in the next five to ten years. This in- 
cludes adding various programs and 
requiring even more polygraph ex- 
aminations in those areas where in- 
telligence is susceptible. The U.S. 
House Permanent Select Commit- 
tee on Intelligence recently con- 
cluded that the polygraph was one 





Enduring Freedom (Cuba) 


information. 


Q Nullified a biological weapons threat when the suspect, a known al-Qaeda member, admitted to falsifying 


Q) Cleared a US. ally by verifying information provided by a high-ranking member of a foreign government. 





() Cleared several detainees of direct involvement with terrorist activities and identified several who partici- 
pated in hostilities. 


Enduring Freedom (Afghanistan) 

Q Confirmed secret contact with a middle-eastern intelligence service by a U.S. employee working as a 
transiator. 

Q Verified significant intelligence information found in the possession of a detainee in Kandahar. 

Q Obtained admission that a detainee actively participated in the war against U.S. Forces on the front lines 
near Kabul. 


CI/CE Investigations 

Q) Identified the individual who removed a Top Secret document from a secure facility. There were 25 suspects 
initially. 

() Cleared a U.S. Army officer of espionage while confirming involvement with a foreign intelligence service. 

Q) Used the polygraph to confirm information passed while examinee was engaging in espionage as part of an 
initial plea agreement to reduce prison term. 


Counterintelligence-Scope Polygraph 

Q Recovered Top Secret/Sensitive Compartmented Information (TS/SCl) materials from a home computer 
due to admission obtained. 

Q) Obtained admission relating to the smuggling of TS documents from a sensitive compartmented informa- 
tion facility (SCIF). Nullified a significant threat and identified a foreign national who assisted. 

Q) Recovered 135 pages of Secret documents from a U.S. Marine Corps officer who had the information stored 
at his residence. 


Limited Access Interpreter 


Q Obtained information relating to secret trips to Iraq and close associations with a government Official in Iraq. 

Q} Obtained information that tied examinee to known or suspected militant 

Q Obtained significant intelligence information omitted from the submitted SF-86 (Questionnaire for National 
Security Positions), which disqualified applicant from positions. 








Figure 1. Selected Successes Achieved Through Polygraph Examinations in Several Mission Areas. 


54 


Military Intelligence 





a> 





«a» 








The author and CW2 Edwards prepare to conduct examinations 
in Kandahar, Afghanistan. 


of the best tools available to safe- 
guard intelligence information. It is 
another tool that commanders can 
use to safeguard information. This 
has many looking at expanding its 
uses to other jobs within the military 
where leaks can occur. 


Conclusion 

The polygraph is still one of the 
best, and sometimes the only, 
means available to determine the 


veracity of information. In the tacti- 
cal environment, the Army has 
proven to be the expert in its em- 
ployment. However, we still have a 
long road ahead. We need to edu- 
cate those in the tactical environ- 
ment better on the uses and benefits 
of polygraph examinations, clearly 
spelling out the ways in which the 
examiners can benefit the com- 
mand. Branch personnel currently 
teach a two-hour block of instruc- 


tion to the CFSO Course and Offic- 
ers Cl Course (35E) at Fort 
Huachuca, Arizona, on a recurring 
basis. Examiners also furnish tai- 
lored instruction to units throughout 
the continental United States when 
requested. Polygraph examination, 
like any other specialty, cannot be 
learned overnight and our experi- 
enced examiners are an invaluable 
asset that we must protect. 


<4 am 
ae al 





Endnote 


1. Supreme Court of the United States; 
Number 96-1133; United States, 
Petitioner v. Edward G. Scheffer, 31 
March 1998. 


Chief Warrant Officer Three Joe Don 
Castleberry is currently the Chief, Poly- 
graph Branch, 310th MI Battalion, 902d MI 
Group. He joined the Army in 1987 and, 
upon completing basic and advanced indi- 
vidual training, was assigned to the J2, U.S. 
Forces, Korea. While assigned to the West 
Coast Battalion, he submitted an applica- 
tion to become a Polygrapher. In 1991, he 
attended the DOD Polygraph Institute and 
worked as an examiner since. CW3 
Castleberry has served in Korea, Denver, 
and at Fort Meade. He attended the War- 
rant Officer Basic Course in May 1994. 
Readers may contact the author through 
E-mail at tinam@meade-inscom.army.mil. 





ASAS User's Conference 2003 





The 2003 All-Source Analysis System (ASAS) User’s Conference will be 16 and 17 September 2003 at Fort Huachuca, 
Arizona. The U.S. Army Training and Doctrine Command (TRADOC) Systems Manager (TSM) ASAS is the sponsor. 
This year’s conference will focus on Lessons Learned and you, the users in the field, will primarily present the forum. 
We want to hear what your success stories are and what improvements you foresee requiring so that the TSM can 
continue to be responsive to your needs. 


Due to our major focus on the Global War on Terrorism including Operations IRAQI FREEDOM and ENDURING 
FREEDOM, we did not hold an ASAS conference in 2002. The program has reached several significant milestones over 
the past two years since our last conference. Some of the highlights are the maturing of the ASAS-Light baseline 
system, interoperability functions, and the Block |i Analysis and Control Element (ACE) workstation. 


The agenda includes briefings by the TSM, Project Manager (PM), and the U.S. Army Communications-Electronics 
Command (CECOM), unit briefings, and demonstrations. The TSM intends it to be an unclassified event; however, there 
may be some classified discussions. We request all attendees transmit their clearance information (both collateral 
and SCl) to the telephone numbers listed below. In both cases cite the “2003 ASAS Users’ Conference 16-17 Septem- 
ber 2003" and list MAJ Eva Branham as the local point of contact. For SCI clearance information only, please pass 
clearance information through special security office channels to SSO Huachuca, Ms. Dondi Minor, telephone (520) 
538-6500 or DSN 879-6500. For collateral clearance information only, please fax to the S2, 306th Mi Battalion at (520) 
533-3044 or DSN 533-821 or cail (520) 533-3025. 


Please send an initial response back from your organization if you will attend; list the number of people and whether 
you plan to brief (if so, state any schedule preferences). Also indicate if there are any areas you are particularly 
interested in hearing briefed or wish seeing demonstrated by the TSM, PM, CECOM, or other ASAS-equipped unit. 

As you complete your briefings, please forward them to MAJ Eva Branham or Ms. Diane Rabb via E-mail at 
eva.branham@hua.army.mil or diane.rabb@hua.army.mil, respectively. For additional information, please contact MAJ 
Branham through E-mail or telephonically at (520) 538-8316 or DSN 879-8316. 








July-September 2003 


55 








Suspected terrorist is escorted to 
the interrogation facilities at 
Camp X-Ray. 


nullified a significant biological weap- 
ons threat while in another it aided 
the State Department by clearing one 


of our allies of direct involvement with 
al-Qaeda. It has also cleared some 
individuals of direct involvement 
with al-Qaeda and allowed com- 
manders to employ available as- 
sets better. 
Expanding Use 
of the Polygraph 

As an investigative aid, the poly- 
graph has helped investigators in 
closing many investigations. In 
cases where the Army requested a 
polygraph test, the polygraph exami- 
nations have either proven or nulli- 
fied numerous allegations. This has 
led to a significant increase in the 
number of requests received by the 
310th MI Battalion. In the screening 
environment, use of the polygraph 
has identified numerous security con- 
cerns and possible threats on a con- 


tinual basis; on several occasions, 
examinees have admitted to having 
classified or sensitive information out- 
side government control. The poly- 
graph has identified these potential 
threats and led to recovery of the in- 
formation 


The DOD is continuing to expand 
the use of the polygraph because of 
its proven benefit. The 902d MI 
Group's polygraph examiner person- 
nel strength may increase from the 
current ten examiners to twenty-five 
in the next five to ten years. This in- 
cludes adding various programs and 
requiring even more polygraph ex- 
aminations in those areas where in- 
telligence is susceptible. The U.S 
House Permanent Select Commit- 
tee on Intelligence recently con- 
cluded that the polygraph was one 





Enduring Freedom (Cuba) 


information. 


pated in hostilities. 


translator. 


near Kabul. 


CI/CE Investigations 


initially. 


due to admission obtained. 


at his residence. 


Limited Access Interpreter 





Enduring Freedom (Afghanistan) 
Q) Confirmed secret contact with a middle-eastern intelligence service by a U.S. employee working as a 


Q) Nullified a biological weapons threat when the suspect, a known al-Qaeda member, admitted to falsifying 


Q) Cleared a U.S. ally by verifying information provided by a high-ranking member of a foreign government. 
(J Cleared several detainees of direct involvement with terrorist activities and identified several who partici- 


) Verified significant intelligence information found in the possession of a detainee in Kandahar. 
4) Obtained admission that a detainee actively participated in the war against U.S. Forces on the front lines 


Q) Identified the individual who removed a Top Secret document from a secure facility. There were 25 suspects 


) Cleared a U.S. Army officer of espionage while confirming involvement with a foreign intelligence service. 
J) Used the polygraph to confirm information passed while examinee was engaging in espionage as part of an 
initial plea agreement to reduce prison term. 


Counterintelligence-Scope Polygraph 
() Recovered Top Secret/Sensitive Compartmented Information (TS/SCl) materials from a home computer 


Q} Obtained admission relating to the smuggling of TS documents from a sensitive compartmented informa- 
tion facility (SCIF). Nullified a significant threat and identified a foreign national who assisted. 
(J Recovered 135 pages of Secret documents from a U.S. Marine Corps officer who had the information stored 


) Obtained information relating to secret trips to Iraq and close associations with a government official in Iraq. 

Q) Obtained information that tied examinee to known or suspected militant organizations. 

Q Obtained significant intelligence information omitted from the submitted SF-86 (Questionnaire for National 
Security Positions), which disqualified applicant from positions. 








Figure 1. Selected Successes Achieved Through Polygraph Examinations in Several Mission Areas. 


54 


Military Intelligence 















3 — 


—— 


The author and CW2 Edwards prepare to conduct examinations 


a , 


in Kandahar, Afghanistan. 


of the best tools available to safe- 
guard intelligence information. It is 
another tool that commanders can 
use to safeguard information. This 
has many looking at expanding its 
uses to other jobs within the military 
where leaks can occur 


Conclusion 

The polygraph is still one of the 
best, and sometimes the only, 
means available to determine the 


veracity of information. In the tacti- 
cal environment, the Army has 
proven to be the expert in its em- 
ployment. However, we still have a 
long road ahead. We need to edu- 
cate those in the tactical environ- 
ment better on the uses and benefits 
of polygraph examinations, clearly 
spelling out the ways in which the 
examiners can benefit the com- 
mand. Branch personnel currently 
teach a two-hour block of instruc- 


tion to the CFSO Course and Offic- 
ers Cl Course (35E) at Fort 
Huachuca, Arizona, on a recurring 
basis. Examiners also furnish tai- 
lored instruction to units throughout 
the continental United States when 
requested. Polygraph examination 
like any other specialty, cannot be 
learned overnight and our experi- 
enced examiners are an invaluable 
asset that we must protect. 


* 





Endnote 


1. Supreme Court of the United States 


Number 96-1133: United States 
Petitioner \ 


March 1998 


Edward G. Scheffer. 31 


Chief Warrant Officer Three Joe Don 


Castleberry is current 


y the Chief, Poly- 


yraph Branch, 310th MI Battalion, 902d MI 
Group. He joined the Army in 1987 and 
jpon completing basic and advanced indi- 
vidual training, was assigned to the J2, U.S 
Forces, Korea. While assigned to the West 
Coast Battalion, he submitted an applica- 
tion to become a Polygrapher. In 1991, he 
attended the DOD Polygraph Institute and 
worked as an examiner since. CW3 
Castleberry has served in Korea, Denver 
and at Fort Meade. He attended the War- 
mnt Officer Basic Course in May 1994 


Readers may contact the author through 


m@meade-inscom.army.mi 





ASAS User’s Conference 2003 


The 2003 All-Source Analysis System (ASAS) User’s Conference will be 16 and 17 September 2003 at Fort Huachuca, 
Arizona. The U.S. Army Training and Doctrine Command (TRADOC) Systems Manager (TSM) ASAS is the sponsor. 
This year’s conference will focus on Lessons Learned and you, the users in the field, will primarily present the forum. 
We want to hear what your success stories are and what improvements you foresee requiring so that the TSM can 
continue to be responsive to your needs. 


Due to our major focus on the Global War on Terrorism including Operations IRAQI FREEDOM and ENDURING 
FREEDOM, we did not hold an ASAS conference in 2002. The program has reached several significant milestones over 
the past two years since our last conference. Some of the highlights are the maturing of the ASAS-Light baseline 
system, interoperability functions, and the Block II Analysis and Control Element (ACE) workstation. 

The agenda includes briefings by the TSM, Project Manager (PM), and the U.S. Army Communications-Electronics 
Command (CECOM), unit briefings, and demonstrations. The TSM intends it to be an unclassified event; however, there 
may be some classified discussions. We request all attendees transmit their clearance information (both collateral 
and SCI) to the telephone numbers listed below. In both cases cite the “2003 ASAS Users’ Conference 16-17 Septem- 
ber 2003" and list MAJ Eva Branham as the local point of contact. For SCI clearance information only, please pass 
clearance information through special security office channels to SSO Huachuca, Ms. Dondi Minor, telephone (520) 
538-6500 or DSN 879-6500. For collateral clearance information only, please fax to the S2, 306th MI Battalion at (520) 
533-3044 or DSN 533-821 or call (520) 533-3025. 


Please send an initial response back from your organization if you will attend; list the number of people and whether 
you plan to brief (if so, state any schedule preferences). Also indicate if there are any areas you are particularly 
interested in hearing briefed or wish seeing demonstrated by the TSM, PM, CECOM, or other ASAS-equipped unit. 

As you complete your briefings, please forward them to MAJ Eva Branham or Ms. Diane Rabb via E-mail at 


eva.branham@hua.army.mil or diane.rabb@hua.army.mil, respectively. For additional information, please contact MAJ 
Branham through E-mail or telephonically at (520) 538-8316 or DSN 879-8316. 











July-September 2003 55 








Doctrine Corner 
Intelligence Support to Information Operations: 
Today and in the Objective Force 


by Lori A. Sieting (CW3, Retired) 


Today U.S. military forces face a 
dynamic, multidimensional, and in- 
creasingly interconnected global 
environment. The characteristics 
of warfare continually evolve with 
technological advancements in in- 
formation systems and communi- 
cations. The battlefield extends far 
beyond traditional parameters into 
the intelligence-intensive, complex 
realm of information operations 
(lO). 


Terrorist groups and other adversar- 
ies use covert techniques to carry 
out computer network attacks, es- 
pionage, data collection, network 
mapping and reconnaissance, and 
data theft. Commanders rely ex- 
tensively on multidiscipline intelli- 
gence support to furnish the 
information they require to target 
and exploit enemy information and 
information systems and establish 
protective measures to defend 
friendly information and systems 
against enemy attack or exploita- 
tion. 


Background 

IO is the employment of the core 
capabilities of electronic warfare 
(EW), computer network operations 
(CNO), psychological operations 
(PSYOPs), military deception, and 
operations security (OPSEC), in 
concert with specified supporting 
and related capabilities, to affect 
or defend information and informa- 
tion systems, and to influence 
decisionmaking (Joint Publica- 
tion (JP) 1-02, Department of De- 
fense Dictionary of Military and 
Associated Terms). Information op- 
erations target information or infor- 
mation systems to affect the 
information-based process, whether 


56 


human or automated. Commanders 
conduct IO by synchronizing IO el- 
ements and related activities, each 
of which may be either offensive or 
defensive. 


Offensive IO destroy, degrade, dis- 
rupt, deny, deceive, exploit, and in- 
fluence adversary decisionmakers 
and others who can affect the suc- 
cess of friendly operations. Offensive 
10 also target the information and in- 
formation systems (INFOSYS) used 
in the adversary’s decisionmaking 
processes. Defensive IO protect 
and defend friendly information, 
command and control (C2) systems, 
and INFOSYS. Effective defensive lO 
enable development of an accurate 
common operational picture based 
not only on a military perspective but 
also on environmental factors that 
may affect the situation. 


A recent example of |O gone awry 
is the former Iraqi Minister of Infor- 
mation, Mohammed Saeed al- 
Sahaf's attempt to influence the 
lraqi people during Operation IRAQI 
FREEDOM. Minister al-Sahaf 
promised victory for Iraq, and when 
U.S. troops were only a few hun- 
dred meters from where he was 
standing in downtown Baghdad, 
Minister al-Sahaf boasted that Iraqi 
troops had forced U.S. soldiers into 
a shameful retreat. 


Adversarial information operations 
have included such actions as us- 
ing misinformation to incite a riot 
against a government, establish- 
ment, or organization. In addition 
to the adversary’s use of misinfor- 
mation, |O may also take the form 
of disruption, degradation, exploi- 
tation, or destruction of communi- 
cations such as Internet sites, 


radio and television broadcasts, 
newspapers, etc. IO is a distinct el- 
ement of combat power. 


Intelligence Support to lO 
Multidiscipline intelligence sup- 
port is integral to the planning, ex- 
ecution, and assessment of IO. 
The integration of IO into the plan- 
ning process enhances protection 
of friendly systems and assets 
while exposing windows of oppor- 
tunity for attack or exploitation. To 
plan and execute IO, we must col- 
lect, store, analyze, and present 
information in a form that the com- 
mander can easily assimilate. The 
commander and staff, when plan- 
ning the friendly scheme of ma- 
neuver, use the products and 
analysis developed by the intelli- 
gence staff to determine when and 
where in the battlespace the 
friendly forces must focus IO. 


Intelligence collection for !O in- 
cludes all possible sources— 
national level; special operations; 
multidiscipline operations; open 
sources such as news media, 
academia, Internet, and commercial 
publications; commercial contacts; 
local nationals; and more. Rapid 
processing, analysis, and dis- 
semination of all-source intelli- 
gence will reinforce and confirm 
relevant IO information and enable 
the targeting and exploitation of an 
adversary’s critical capabilities, 
systems, and facilities. 


Specific Areas of 
1O Support 


Intelligence support to IO includes 
support in seven areas: OPSEC, 
PSYOPs, military deception, elec- 
tronic attack, physical destruction, 


Military Intelligence 


civil-military operations, and public 
affairs. 


Support to Operations Security 
(OPSEC). This intelligence support 
consists of identifying capabilities 
and limitations of the adversary’s 
intelligence system to include ad- 
versary intelligence objectives and 
the means, methods, and facilities 
used by the threat to collect, pro- 
cess, and analyze information. 


Support to Psychological Op- 
erations (PSYOPs). This category 
of intelligence support to |O includes 
the environment, target groups, and 
influence on others, to include— 


Y) Identifying the cultural, social, 
economic, and political environ- 
ment of the area of interest 
(AOl). For example, adversary 
mechanisms for political control, 
adversary communication and 
broadcast systems used to 
elicit support from the populace, 
current and past adversary pro- 
paganda activities, and their ef- 
fectiveness. 

J Identifying target groups and 
subgroups and their locations, 
conditions, vulnerabilities, sus- 
ceptibilities, cultures, attitudes, 
and behaviors. This includes 
determining popular radio and 
television programs and periodi- 
cals and their audience demo- 
graphics; media personalities 
and political cartoons; and group 
attitudes, beliefs, perceptions, 
alliances, and behavior. 

W Identifying the effect of planned 
PSYOPs on individuals out- 
side the targeted group (for ex- 
ample, multinational partners 
and neighboring populations). 

Support to Military Deception 
includes identifying the capabilities 
and limitations of the adversary’s in- 
telligence-gathering systems as well 
as adversary biases and perceptions. 

Q) Profiles of crucial adversary lead- 
ers. 

Q) Cultural, religious, social, and 
political characteristics of the 
country and region. 


July-September 2003 


Q) Sources of military, economic, or 
political support. 

Q) Adversary decisionmaking pro- 
cesses, patterns, and biases. 


-Q) Adversary perceptions of the 


military situation in the area of 
operations (AO). 

Q) Capabilities and limitations of 
adversary counterintelligence 
(Cl) and security services. 


Support to Electronic Attack 
(EA). intelligence support to IO in the 
area of EA includes identification and 
assessment of the adversary nodes 
and capabilities discussed below. 


Q) Identifying critical adversary in- 
formation; command, control 
communications, and comput- 
ers (C4); and intelligence nodes. 
This includes determining and 
presenting the adversary’s elec- 
tronic order of battle (OB) and 
the information system infrastruc- 
ture, the enemy's C2 system vul- 
nerabilities, and their means of 
protecting their C2 systems. 

) Assessing adversary EA capa- 
bilities (numbers, types, and dis- 
position of EW systems, 
technical characteristics, meth- 
ods of employment, and vulner- 
ability to counteractions). 


Support to Physical Destruc- 
tion is the identification of critical 
adversary information, C4, and intel- 
ligence nodes, and systems (adver- 
sary information infrastructure) to 
include C2 systems, nodes, and lo- 
cations; adversary C2 system vul- 
nerabilities; and adversary |O 
systems, locations, and facilities. 


Support to Civil-Military Opera- 
tions (CMO) consists of identifying 
the cultural, social, economic, and 
political environment of the AO, 
including— 


) Population demographics. 

Q) Civilian populace attitudes, alli- 
ances, and behavior. 

Q) Availability of basic necessities 
(food, clothing, water, shelter, 
and medical care) and the abil- 
ity of the populace to care for it- 
self. 


Q) Locations and potential routes, 
destinations, and assembly ar- 
eas or sites of displaced per- 
sons. 

Q) Local government type, status, 
character, organization, and ca- 
pabilities. 

Q) Availability of local material and 
personnel to support military 
operations. 

Q) Nongovernmental organizations 
or private volunteer organiza- 
tions in the AO, their agendas, 
resources, and capabilities. 


Support to Public Affairs (PA). 
This area of intelligence support to 
1O includes identification of factcrs 
in the environment as well as in 
collective opinion, to include— 


Y) Identifying the coalition and for- 
eign public physical and social 
environment (propaganda and 
misinformation capabilities, ac- 
tivities, targets, themes, and 
dissemination means of the ad- 
versary). 

Q) Identifying world, national, and 
local public opinion (location, 
biases or predispositions, and 
agenda of national and interna- 
tional media representatives in 
the AO, and trends reflected by 
the national and international 
media). 

Intelligence Preparation of 

the Battlefield and |O 

The purpose of the intelligence 
preparation of the battlefield (IPB) 
in support of IO is to gain an un- 
derstanding of the information en- 
vironment and to determine how 
the threat will operate in the infor- 
mation environment. The goal is 
identification of— 


QQ) Threat vulnerabilities that 
friendly 10 can target and ex- 
ploit. 

Q Threat information capabilities 
against which friendly forces 
must defend. 

A detailed understanding of an 
adversary’s information infrastruc- 
ture—a combination of numerous 
elements—is a very important com- 


57 











IPB Step 


10 Focus 





Define the battlefield environment 


Define the information environment 





Describe the battlefield’s effects 


Describe information 
environment’s effects 





Evaluate the threat 


Evaluate the threat’s information 
systems 





Determine threat courses of action 








Determine threat actions in the 
information environment 








Figure 1. IPB and IO Focus. 


ponent of IPB in support of lO. An 
information infrastructure consists 
of multiple types of systems, such 
as intelligence, logistics, medical, 
personnel, operations, fire support, 
EW, etc., that may operate as 
separate information systems but 
support the adversary and his sup- 
porting organization as a whole. 
The different systems, while sepa- 
rate, may physically share the 
same communications pathways 
or processors and are, therefore, 
high-value targets (HVTs) for physi- 
cal destruction and a vital part 
of the IPB process that supports 
10. To focus analysis on the in- 
formation environment, the IPB 
steps relate to |O as shown in Fig- 
ure 1. 


For offensive IO, IPB is a continu- 
ous process used to develop a de- 
tailed knowledge of the adversary 
employment of information and 
information systems. IPB for offen- 
sive |O uses a process of overlap- 
ping and simultaneous actions that 
produces situation updates, 
thereby providing joint forces com- 
manders and their subordinate 
commanders with flexible offensive 
lO options. IPB in support of of- 
fensive |O builds upon traditional 
IPB and requires the following: 


“J Knowledge of the technical ca- 
pabilities of the adversary’s in- 
formation systems. 

“J Knowledge of the political, eco- 
nomic, social, and cultural influ- 
ences. 


58 


) Ability to develop templates used 
to portray the battlespace and 
refine targets for offensive |O 
courses of action (COAs). 

) Understanding of the adversary’s 
or potential adversary’s deci- 
sionmaking process. 

Q) In-depth understanding of the 
biographical background of 
major adversary leaders, deci- 
sionmakers, communicators, 
and their advisors, to include 
motivating factors and their lead- 
ership styles. 

“J Knowledge of the area of the re- 
sponsibility (AOR) and joint op- 
erational area (JOA) geographic, 
atmospheric, and littoral influ- 
ences on adversary and friendly 
operations. 

At lower echelons, the S2 will pro- 
cess information concerning IO, 
which is collected in accordance with 
the information requirements (IR) and 
the priority intelligence requirements 


(PIRs) and forwarded to higher ech- 
elons for analysis, use in IPB, and 
decisionmaking. Higher echelons 
will direct OPSEC measures and 
other !O-related tasks. Intelli- 
gence tasks performed in support 
of 10, identified through IPB, in- 
clude providing intelligence sup- 
port to— 


4) Offensive IO which includes sup- 
port to PSYOPs, military decep- 
tion, and EA. 

Q) Defensive 10 which includes 
support to OPSEC. 

Q) Activities related to 1O which 

includes support to CMO and 

PA. 

Targeting (IO). 

Battle damage asssessment 

(BDA) (IO). 

The physical description and 
overlays of |O targets can be 
combined with an !O decision- 
making and execution matrix to 
form an accurate assessment of 
an adversary’s information capa- 
bilities and vulnerabilities. The 
adversary’s strengths and weak- 
nesses are compared with the as- 
sessment of friendly capabilities 
to determine friendly C2 vulner- 
abilities and strong points. 


Q) 
Q 


Information Environment 
Templates 

Based on the threat’s normal or 
“doctrinal” organization, equip- 
ment, doctrine, and tactics, tech- 
niques and procedures (TTPs), the 





Template Description 


Purpose 





Decisionmaking | Depicts who in an 


makes decisions. 


adversary organization 


Determines how an 
adversary organization 
operates to achieve its 
mission or goals. 














Information Describes what nodes, Identifies critical adversary 

Infrastructure links and systems an information system nodes, 
adversary organization links, and systems (to 
uses to collect, process, | include those assets capable 
and disseminate of impacting the information 
information. environment). 

Information Depicts how the adversary | Identifies adversary 

Tactics employs available information and information 


information assets. 


system capabilities, vulnera- 
bilities, and susceptibilities. 











Figure 2. Information Environment Templates. 


Military Intelligence 


intelligence officer creates threat 
models to depict how threat forces 
prefer to conduct operations under 
ideal conditions. Threat models 
generally consist of doctrinal tem- 
plates, descriptions of preferred 
tactics and options, and identifica- 
tion of HVTs. Figure 2 depicts 
some of the types, descriptions, 
and purposes of information envi- 
ronment templates. 


The intelligence officer produces 
several other products which contain 
1O-related information, including: 

) Situation Template. A situation 
template is a graphic depiction 
of expected threat force disposi- 
tions for a specific COA. A situ- 
ation template that focuses on 
1O depicts how the threat may 
employ its information assets 
both offensively and defensively 
to achieve an operational advan- 
tage. 

YW) High-Value Target List (HVTL). 
The HVTL should include threat 
information assets, even those 
that the unit is not going to at- 
tack by lethal means. Typical 
information target sets include 
decisionmakers and information 
system assets. 

4) Event Template and Matrix. An 
event template and supporting 
event matrix identify specific ar- 
eas and threat activities that pre- 
dict which COA the threat will 
chose. IO input to the event tem- 
plate and matrix helps develop 
intelligence collection require- 
ments for !O. 

The intelligence officer evaluates 
and rank-orders the threat |O COAs 
according to their likely order of 
adoption. The purpose of prioritiz- 
ing these COAs is to provide the 
staff with a starting point for the de- 
velopment of a plan that addresses 
potential threat COAs. Based on 
the time available, the intelligence 
staff develops each threat |O COA 
with as much detail as possible. In 
some instances, they may only 
develop the threat’s most likely and 
most dangerous IO COAs. As part 


July-September 2003 


of determining threat COAs, the 
staff postulates how, when, where, 
and why (to what purpose) the 
threat will use its information sys- 
tems to support its likely objec- 
tives and achieve its desired end 
state. 


Intelligence Support to |O 
in the Objective Force 
Intelligence support to IO will be 
increasingly critical to safeguard- 
ing U.S. information and informa- 
tion infrastructure in the future. 
Factors that contribute to this in- 
clude projected technological ad- 
vancements, growing reliance on 
information technology, and the fu- 
ture combat system's potential to 
enable easy access to products 
such as the common operational 
picture at all levels of command. 
Even if the adversary succeeds in 
interrupting portions of the friendly 
system, individual soldiers’ initia- 
tive must automatically take the 
appropriate countermeasures and 
report information of intelligence 
value in support of 1O. This indi- 
vidual initiative will be a product of 
training and a command climate 
instilled across the force long be- 
fore enemy offensive !O disable 
components of our information sys- 
tems. Intelligence support to IO in 
the Objective Force will be a collabo- 
rative, coordinated effort at all levels 


of command. Intelligence support— 
including collection, analysis, devel- 
oping and prioritizing adversary |O 
COAs, IPB in support of IO, re- 
quirements management, presen- 
tation of 1O-related information, 
etc.—is integral to conducting !O. 


Intelligence support to IO in the 
Objective Force will essentially 
have the same objectives that 
exist today. However, development 
of new TTPs will be necessary to 
reflect the changes in future sys- 
tems and organizations. The sig- 
nificance of intelligence support to 
10 will be paramount as future in- 
formation technology takes infor- 
mation access and dissemination 
to higher levels. The future infor- 
mation environment and its asso- 
ciated threats are a primary focus 
in Objective Force. To this end, 
staff structure in the Objective 
Force will organize not by echelon 
(e.g., S2/G2/J2) but rather by func- 
tion in order to better focus efforts 
on such operations as IO. 


Objective Force Staff 
Structure 


The Objective Force Battle Com- 
mand will consist of a core staff 
structure, organized into functional 
groupings, to operate within the en- 
vironment of knowledge-based 
warfare. The nodal construct for staff 





Figure 3. Objective Force Staff Structure. 


59 








organization within the Battle Com- 
mand involves five nodes: one 
integrating node and four multifunc- 
tional nodes. The five nodes (cells) 
are: 


Command Integration Cell (CIC). 
Information Superiority Cell 
(ISC). 

Fires and Effect Cell (F&EC). 
Build and Sustain Combat 
Power Cell (B&SCPC). 
Maneuver and Support Cell 
(MSC). (See Figure 3). 


Information operations will be one 
of the principle functions of the 
ISC. 


Role of the Information 
Superiority Cell 

The ISC will develop and main- 
tain a superior knowledge edge for 
the commander to execute knowl- 
edge-focused warfare. The ISC 
executes a variety of staff planning 
functions to reach this knowledge 
advantage. These include staff 
planning for information operations 
(offensive and defensive), network 
operations, surveillance and recon- 
naissance planning and execution, 
counterintelligence, information 
assurance, space asset access, 
intelligence synchronization, intel- 
ligence planning and analysis, and 
overall data, information, and intel- 


O OO OO 


ligence fusion. The ISC directs the 
planning and management func- 
tions essential to all knowledge- 
based warfare. The ISC will have 
staff expertise traditionally repre- 
sented by IO, signal, intelligence, 
cavalry, and space with the organic 
reach to global assets necessary 
to develop and maintain the 
commander's knowledge advan- 
tage. 


Conclusion 

U.S. force readiness depends 
upon our ability to provide intelli- 
gence and analysis concerning the 
current and future |O methods and 
capabilities of potential adversar- 
ies and incorporate these consid- 
erations into the planning and 
execution of military operations. 
The operational environment will 
continue to change as adversaries 
acquire access to more advanced 
information systems and technolo- 
gies. U.S. military forces must 
evolve to meet the needs of the 
dynamic information environment. 


For more information concerning 
Intelligence Support to Information 
Operations, see JP 3-13, Joint 
Doctrine for Information Opera- 
tions, and FM 3-13, Information 
Operations: Doctrine, Tactics, 
Techniques, and Procedures (Fi- 
nal approved DRAG dated October 


2002). FM 2-0, Intelligence 
(DRAG dated 19 February 2003) 
provides in-depth information con- 
cerning IPB in support of IO. Fur- 
ther information regarding IO in the 
Objective Force is in U.S. Army 
Training and Doctrine Command 
(TRADOC) Pamphlet 525-3-0.1, 
The U.S. Army Objective Force 
Battle Command Concept, and 
other Objective Force 525-series 
TRADOC Pamphlets. FM 34-130, 
Intelligence Preparation of the 
Battlefield, provides a detailed 
breakdown of IPB. 





Lori Sieting (Chief Warrant Officer 
Three, U.S. Army, Retired) is currently a 
contractor supporting the Doctrine Divi- 
sion, U.S. Army Intelligence Center and 
Fort Huachuca. In addition to writing 
Military Intelligence doctrine, Mrs 
Sieting has worked as a training devel- 
oper for the Stryker Brigade Combat 
Team, and has served in a variety of MI 
assignments (tactical, strategic, and 
deployed) as a warrant officer. Readers 
may contact her via E-mail at lori 
sieting@us.army.mil and telephonically 
at (520) 533-9966 or DSN 821-9966 











Rewrite of the Warfighter’s Guide to Communication Architectures 


We are in the process of rewriting this guide to get it up to date with the contemporary communica- 
tion architectures currently in use in the tactical arena. You have many success stories about how 
you delivered intelligence support throughout the battlefield; please share your input with us. 


Please tell us if you have done something different from the norm or if you put another piece of 
equipment in the loop to help a process be more useful—we are interested! The point of contact 
(POC) will be traveling throughout the community to validate these architectures before we publish, 
so if you have something that you believe could benefit other organizations, please send it and we 
will research it. We plan to publish this updated guide in early 2004. 


Please contact the POC with your contributions for this update: CW2 Robert D. Rounds, Officer in 
Chief, Tactical Exploitation of National Capabilities Support Team, Operations Support Activity, and 
Headquarters, Operations, 743d MI Battalion. You may E-mail me at robert.rounds@buckley.af.mil 
or squarepair@us.army.mil and call me at (303) 677-5286/4244 or DSN 877-5286/4244. 

















60 


Military Intelligence 


Proponent Notes 


{ = ° ° 
by Lieutenant Colonel Evic W. Fatzinger 


Each spring, the Office of the Chief, 
Military Intelligence (OCMI), at Fort 
Huachuca, Arizona, compiles and 
coordinates the annual Military Oc- 
cupational and Classification Struc- 
ture (MOCS) change proposals, and 
sends them to the Department of the 
Army (DA) for final review. We are 
on schedule with the fiscal year 
2003 (FY03) submissions and by the 
time you read this update, the final 
version should be out for major 
Army command (MACOM) staff- 
ing. The MI Transformation initia- 
tives this year have again focused 
on changes to our enlisted structure. 
Officer changes, particularly within 
our warrant officer corps, will become 
more evident in next years MOCS— 
as we make adjustments to accom- 
modate the enlisted changes—but 
are minimal this year. Specifically, 
while the FY02 MOCS focused on 
refinements to career management 
field (CMF) 98, signals intelligence 
(SIGINT), the FYO3 MOCS has most 
significantly affected the enlisted 
counterintelligence (Cl) and human 
intelligence (HUMINT) military oc- 
cupational specialties (MOSs) of 
CMF96. 


Enlisted Actions 


The Cl/HUMINT MOCS proposal 
will merge MOSs 97B and 97E 
at Skill Level 1. The result of this 
long anticipated move will be that 
Counterintelligence Agent (MOS 
97B) will no longer be an entry- 
level MOS. It will instead assess 
at Skill Level 2 (SL2). The proposal 
will generate an MOS-producing 
course for 97B20 with expanded Cl 
training to focus better on agent 
skills and tasks. The HUMINT Col- 
lector (MOS 97E) will remain an 
entry-level MOS but will include 
both select basic Cl and HUMINT 
skill sets at SL1. The proposal also 


July-September 2003 


removes the language requirement 
for MOS 97E at SL1. 


This is not as radical a change 
as it might first seem. The Army 
will continue to address interroga- 
tor language needs but will base 
them on unit-positional require- 
ments documented at SL2 and 
above. Both of these changes pro- 
vide advantages by focusing skills 
to match the actual duties that our 
97B and 97E soldiers are perform- 
ing at the various skill levels. Just 
as important, it provides for a bet- 
ter return on language training in- 
vestment (about 70 percent of the 
97E first-term soldiers do not re- 
enlist, and daily duties at the 
97E10 level, in most cases, do not 
require the use of a foreign lan- 
guage). When approved, the Army 
will outline the guidelines for posi- 
tion and selected SL1 personnel- 
reclassification actions in a Notice 
of Future Change (NOFC) to be 
published in October 2003. 


Tactical Unmanned Aerial Ve- 
hicle (TUAV) Operator Assign- 
ment-Oriented Training (AOT). 
The FY03 MOCS will establish TUAV 
qualification as completion of a TUAV 
common core of instruction plus an 
operational system-specific AOT 
track (initially for the Hunter and 
Shadow UAVs). This proposal will 
allow the Army to get soldiers to the 
field faster with the specific training 
required for their first assignments. 
When approved, those UAV Opera- 
tor (MOS 96U) soldiers already hav- 
ing completed training in Hunter, 
Shadow, or both, will receive credit 
for additional skill identifiers (ASIs) 
as trained operators. 


98P Multisensor Operator Up- 
date. The OCMI continues to get 
questions concerning when certain 


soldier actions related to the cre- 
ation of MOS 98P, Multisensor 
Operator, will occur. Creation of 
MOS 98P was approved as part of 
the FY02 MOCS proposal. This 
MOS will serve as the primary op- 
erator for current and future tacti- 
cal SIGINT systems and ground 
surveillance systems (GSSs). The 
first tactical SIGINT system the 
98P will operate is the Prophet 
multispectrum, multidiscipline col- 
lection, jamming, processing, and 
reporting system. Traditionally, 
when the Army creates a new 
MOS, it allows sufficient time for 
the development and implementa- 
tion of an accessions and training 
strategy to occur over a two- to 
three-year period. With Prophet 
fielding to the Army accelerated in 
response to world events, this has 
not been feasible for this MOS. 


The first 98P positions should ap- 
pear in the Personnel Management 
Authorization Document (PMAD) 
this summer. Once these positions 
begin to show up, the OCMI will work 
with the U.S. Army Total Personnel 
Command (PERSCOM) MI Branch 
and the Army Staff to recommend 
“out-calls” from the 96R, 98G, and 
98H MOSs to begin filling positions, 
particularly at the NCO level. (These 
are the Ground Surveillance System 
Operator, Cryptologic Linguist, and 
Communications Intercept/Locator, 
respectively.) At the same time, we 
will be working closely with Acces- 
sions Branch, PERSCOM, and the 
U.S. Army Intelligence Center's 
schools to begin “producing” 98Ps 
through the training “pipeline.” Dur- 
ing this initial accelerated fielding 
period, the Army may ask soldiers 
already assigned to units receiving 
the Prophet system with New Equip- 
ment Training Team (NETT) instruc- 


61 








Old New 
350B All-Source Intelligence Technician 350F 
350D Imagery Intelligence Technician 350G 
350L Attaché Technician 350Z 
350U_ Tactical Unmanned Aerial Vehicle Operations Technician 350K 
351B Counterintelligence Technician 351L 
351C Area Intelligence Technician 351Y 
351E Human Intelligence Collection Technician 351M 
352C_ Traffic Analysis Technician 352N 
352G_ Voice Intercept Technician 352P 
352H Communications Interceptor/Locator Technician 352Q 
352J Emanations Analysis Technician 352R 
352K Non-Morse Intercept Technician 352S 
353A IEW Systems Maintenance Technician 353T 


Figure 1. Conversion Chart Showing the Changing WO MOS Codes. 


tion at the time of fielding to oper- 
ate the system until the training 
and reclassification actions neces- 
sary to provide sufficient 98P sol- 
diers to meet the needs of the 
Army. 


Upcoming Noncommissioned 
Officer Selection Boards. To view 
by-MOS input to the senior 
enlisted centralized boards, go to 
uniform resource locator (URL) 
http://138.27.35.32/ocmi/ 
EN_Info_portal. htm. This is the 
best place to start if you wish to 
know what the board members are 
seeking. 


As always, if you have questions 
on career maps, courses, impact of 
assignments, or any other enlisted 
actions, feel free to contact me, Ser- 
geant Major Walter Crossman. You 
can reach me via E-mail at walter. 
crossman@us.army.mil and by tele- 
phone at (520) 533-1174 or DSN 
821-1174. 


Warrant Officer Actions 
Warrant Officer (WO) MOS 
Recoding. While not in the recent 
MOCS submission, changes to the 
MOS coding structure throughout the 
Army are on the horizon. In the near 
future, you will see a realignment of 
all Mi WO MOSs to 35-series as are 
the current commissioned areas of 
concentration (AOCs). As a first step 
in the warrant officer arena, 
PERSCOM issued a Notification of 


62 


Future Change (NOFC) on 8 August 
2002 to DA Pamphiet 611-21, W- 
0304-1, Revision of Branch 35 
(Military Intelligence). This NOFC 
changes the MOS codes for our Ml 
Warrant Officer MOSs (listed in Fig- 
ure 1); itdoes not change the MOS 
titles. Although this change goes 
into effect in FY05, you will start 
seeing the new MOS codes in vari- 
ous documents dealing with tables 
of organization and equipment 
(TOEs), tables of distribution and 
allowance (TDAs), and WO train- 
ing. 


FY03 MOCS Changes. While 
there were no significant warrant 
officer changes for the MI Corps in 
the recently submitted FY03 
MOCS, you can expect to see a 
number of changes next year. To ac- 
commodate the adjustments made 
in our enlisted feeder MOSs, we will 
conduct a review of our SIGINT war- 
rant officer MOSs. We will complete 
this work in the fall in order to make 
the FY04 MOCS submission. The 
changes should be available for 
MACOM review about this time next 
year. 


Upcoming Warrant Officer Se- 
lection Boards. The CW3/4/5 Pro- 
motion Board convened on 28 April 
and ran through May 2003. Results 
should be available in late August or 
early September. The Army and 
OCMI have published much on pre- 


paring personnel files for promotion 
boards. Hopefully, those soldiers in 
the zone of consideration got the word 
and ensured that their personnel 
records were complete and that they 
had current official photographs in 
their files. 


Remaining FY03 Mi WO Acces- 
sion Boards. We have two acces- 
sion boards remaining this year. The 
first will be 14-18 July 2003 where all 
Mi MOSs except 352G (Voice Inter- 
cept Technician) and 353A (Intelli- 
gence Electronic Warfare [IEW] 
Systems Maintenance Technician) 
will be considered. The September 
board, to be on 15-19 September, 
will consider all MOSs except 
352H (Communications Intercep- 
tor/Locator Technician) and 352J 
(Emanations Analysis Technician). 
Interested soldiers should submit 
their applications as soon as pos- 
sible to ensure they are board-ready 
and not delayed. A very recent G1 
policy change will now allow consid- 
eration of applicants three times 
rather than just two; if you or some- 
one you know has previously sub- 
mitted a package, remember they 
must update their information with 
OCMI to keep the applications cur- 
rent. 


The point of contact (POC) for all 


WO actions is Chief Warrant Officer 
Five Lon Castleton. You can reach 


Military Intelligence 


we ten 


him via E-mail at lon.castleton@ 
us.army.mil and telephonically at 
(520) 533-1183 or DSN 821-1183. 


Officer Actions 

Commissioned Officer Develop- 
ment and Career Management. 
Changes to DA Pamphiet 600-3, 
Commissioned Officer Develop- 
ment and Career Management, 
have been submitted within the FY03 
MOCS. When approved, the Army 
will document the major changes to 
the Branch-qualification sections for 
Mi Captains and Majors. Branch 
qualification for Ml Captains has 
changed to specify that all Cap- 
tains must command for at least 
12 months and must also serve at 
least 12 months in a position as a 
battalion S2, assistant brigade S2, 
or as an intelligence staff officer. 
MI Majors must serve as an ex- 
ecutive officer (XO), S3, or division 
analysis and control element chief 
for at least 12 months; they must 
also serve as a brigade S2, in an 
intelligence officer position for at 
least 18 months, or both. These 
changes will bring the Branch- 
qualification requirements for MI 
Branch officers more closely in line 
with the Army Training and Leader 
Development Panel (ATLDP) rec- 
ommendation to provide a better 
basis for officers to make personal 
assessments of their competitive- 
ness for promotion and continuing 
Army careers. 


Change in Time-in-Grade for 
Captain Promotion. The pin-on 
milestone for promotion to Captain 
increased from 38 months to 40 
months this past April. We expect 
this to be the beginning of an incre- 


July-September 2003 


mental return to the previous 42- 
month requirement. The current ac- 
celerated promotion rate was to 
alleviate the shortage of captains; 


‘since this shortage has ended, the 


Army is now returning to the longer 
developmental times for the Lieu- 
tenants before their promotion to 
Captain. 


Function Area 34, Strategic In- 
telligence Officer. Some major 
changes that will soon impact FA 
34 officers have been incorporated 
into two essential personnel docu- 
ments, DA Pamphlets 611-21 and 
600-3. 


DA PAM 611-21, Military Occu- 
pational Classification and Struc- 
ture, has now deleted all reference 
to the MI AOC 35B (Strategic In- 
telligence) and has added FA 34. 
This means that the Army has for- 
mally documented FA 34 within the 
Army and that 35B no longer exists 
as an AOC. 


DA PAM 600-3, modification now 
requires only non-MI Branch officers 
to attend the Strategic Intelligence 
Officer Course at Fort Huachuca, 
Arizona, upon selection for FA 34 and 
before attendance at the Defense In- 
telligence Agency (DIA) Postgradu- 
ate Intelligence Program (PGIP). 
However, this does not preclude 
other officers from requesting atten- 
dance on a space-available basis. 
Additionally, the requirement for all 
FA 34 officers to complete the Mas- 
ter of Science in Strategic Intelli- 
gence degree has been dropped, but 
the requirement for all FA 34 officers 
to complete the PGIP successfully 
remains. The Army still encourages 
officers to apply for and complete the 


Masters program but they will not 
automatically have any additional 
time at the Joint Military Intelligence 
College (JMIC) for this purpose. (In 
the past, some Masters candi- 
dates had received 50 to 80 days 
at the end of the PGIP program to 
do so.) This change shortens the 
time at the JMIC from 52 weeks to 
approximately 40 weeks. Finally, 
Branch qualification for FA 34 Ma- 
jors has been changed to require 
these officers to serve 24 months 
(instead of the current 30 months) 
in an FA 34 position; for Lieuten- 
ants Colonel, this requirement 
changes from 48 months to 36 
months. 


Upcoming Officer Selection 
Boards. The selection board for Ac- 
tive Component Colonel will convene 
29 July through 22 August 2003. 


The POC for officers and civilians 
is Ms. Charlotte Borgharadt. Readers 
may contact her through E-mail at 
c.borghardt@us.army.mil and by 
telephone at (520) 533-1188 or DSN 
821-1188. 


e 


* 


Lieutenant Colonel Eric Fatzinger is the 
Director, Office of the Chief, Military In- 
telligence (OCMI). Readers may contact 
him via E-mail at eric.fatzinger@us. 
army.mil. Robert C. White, Jr., is the 
Deputy OCMI; you can reach him via 
E-mail at bob.whitejrf@us.army.mil. Read- 
ers may access the OCMI website through 
the Intelligence Center homepage at http:/ 
/usaic.hua.army.mil/ and then linking to 
OCMI by choosing the Training/MI Pro- 
fessionals area. You will be able to find 
information on issues ranging from en- 
listed career field overviews to officer, 
warrant officer, and civilian updates. 








63 








sly Fox 


ASAS Master Analysts’ Support to 1O—Information Engineering 


by Matthew J. Nunn 





What does the All-Source Analysis 
System (ASAS) Master Analyst (ad- 
ditional skill identifier [ASI] 1F) bring 
to intelligence support to information 
operations (10)? This will be the first 
of three articles discussing what the 
“Sly Fox” brings to the fight. The 
follow-on articles will address “Com- 
munications” and “Analysis.” 


Information Engineering 
Concept 

The ASAS Master Analyst (ASI 
1F) should be an essential player 
within the analysis and control ele- 
ment (ACE) during intelligence sup- 
port to |O. The 1F brings extensive 
training in information engineering, 
communications, and analysis. Mas- 
tery of all three of these areas is 
paramount to successful orchestra- 
tion of intelligence operations within 
the ACE. The balance of this article 
will deal with the Master Analysts 
and the value-added they bring in the 
area of information engineering. 

The Information Engineering con- 
cept teaches the 1F to backward- 
plan to provide timely, accurate, and 
predictive intelligence products to the 
commander. The 1F is well schooled 
in developing the Communications 
Architecture (systems, capacity, 
protocols), Information Architecture 
(intelligence reports, data elements, 
and databases), and Information 
Shaping (products, detail, and fusion 
parameters). 


Communications 


Architecture 

The first step in information engi- 
neering is the Communications Ar- 
chitecture developing a plan for the 
systems with which the ACE will 
need to interface. These include 


64 


sensors and collectors, internal and 
external communications, and vari- 
ous networks and workstations. 
After identifying the various sys- 
tems involved, the ASAS Master 
Analyst will need to evaluate the 
capacity of the communications in- 
frastructure to decide the types and 
sizes of products, incoming and out- 
going, that it can support. Finally, 
there must be intimate familiarity 
with the various protocols used by 
the systems to ensure successful 
interoperability. The Master Analyst 
must be aware of the capabilities and 
limitations that any communications 
architecture presents. 


Information Architecture 

The second step is Information Ar- 
chitecture, which comprises intelli- 
gence reports, data elements, and 
databases. Here the 1F will plan 
where the information and data will 
come from and into which databases 
it will parse. The Master Analyst must 
know what intelligence reports the 
system will be receive, how they 
will come, and the data elements 
that each will contain. Critical to 
getting the data elements into the 
appropriate databases for analysis, 
the 1F must understand how ASAS 
handles each type. For example, 
the Master Analyst must know the 
structural differences between U.S. 
Message Text Format (USMTF) 
and United States Signals Intelli- 
gence Directive (USSID) tactical re- 
port (TACREP) formats, in order to 
properly adjust and normalize sys- 
tems for the receipt of each. 


Information Shaping 
Information Shaping is the last 


step in information engineering. In- 
formation shaping will take into 


consideration the product required, 
its context and detail and, as re- 
quired, adjust the fusion algo- 
rithms (All-Source Enclave [ASE] 
related). The commander's prefer- 
ence, mission requirements, and 
the ability of the communications 
architecture to support dissemina- 
tion will drive the types of products 
produced. Often briefings, text, 
and graphic reports will be neces- 
sary. How much detail is critical 
at a given time and the echelon 
defines the product; this in turn is 
driven by the commander, collat- 
eral recipients, and the level of de- 
tail that the workstations and 
communications can support. Fi- 
nally, the Master Analyst will have 
to decide how to adjust (if required) 
the fusion algorithms (level of ag- 
gregation and node maintenance) 
on the ASE that will best support 
maintaining the picture for the 
product. 


Final Thought 

The ultimate goal of ASAS infor- 
mation engineering is to enable the 
Master Analyst to combine data el- 
ements to create information to pro- 
duce intelligence for the commander 
in a relevant, timely manner. 


Matt Nunn is the Course Manager and an 
Instructor for the ASAS Master Analyst 
Branch. His career has included 13 years 
as a Signals Intelligence Analyst at mul- 
tiple echelons and 5 years instructing 
ASAS Master Analyst Course and ASAS 
Instructor Certification Course. He also 
has 10 years’ experience using and in- 
structing about various ASAS systems. 
Readers may contact Mr. Nunn via E-mail 
at matthew.nunn@us.army.mil and tele- 
phonically at (520) 538-1184 or DSN 879- 
1184. 





Military Intelligence 


—_~ 


11th Training Notes 


Reorganization of the U.S. Army Intelligence Center 
by Russell w. Watson, Pb.D., and George A. VanOtten, Ph.D. 





To use scarce resources more ef- 
fectively, Brigadier General John 
Custer directed the reorganization of 
the U.S. Army Intelligence Center 
and Fort Huachuca. Accordingly, on 
1 April 2003, all training responsi- 
bilities other than those of the Non- 
commissioned Officer Academy, 
consolidated under the 111th Military 
Intelligence (MI) Brigade; the Army 
inactivated the 112th MI Brigade 
(Provisional). 


All training development and sup- 
port missions, including the devel- 
opment of MI doctrine, transferred 
to the newly created Directorate of 


Training Development and Support 
(within the Futures Development and 
Integration Center). Additionally, the 
Mi Battle Command Battle Lab- 
Huachuca moved to the Directorate 
of Combat Developments. This re- 
alignment of functions better pos- 
tures the Center to allow concepts 
to drive doctrine and doctrine to drive 
training development, resulting in 
current and accurate programs of 
instruction. The organizational chart 
depicts the new structure. 


The Commander of the 111th MI 
Brigade is Colonel Michael T. Flynn 
and Dr. VanOtten is the Dean of the 


111th MI Brigade; Colonel Jack W. 
Russell is the Director of the Di- 
rectorate of Training Development 
and Support and Dr. Watson is the 
Deputy Director. 


Readers may contact Dr. Watson 
via E-mail at russell.watson@us. 
army.mil and telephonically at (520) 
538-7303 or DSN 879-7303. You can 
reach Dr. VanOtten via E-mail at 
george. vanotten@us.army.mil and 
by telephone at (520) 533-5407 or 
DSN 821-5407. The 111th MI/ 
Brigade’s website is available 
through http://usaic.hua.army.mil/ 
111bde/11 1th.htm. 











Commanding | 








General 





| DTO 








Deputy Commandant 
for Training/DCG 








| Deputy Commandant 
For Futures 














] 


Training Dev | 
& Support | 


J 














| | 


a 
I ] | Dean | 








a . } . ] | [ ] 
| Ncoa | | 344th | | 305th | | 309th || 304th | | 306th | 





[ 














TSMs 














Battle Lab 











| 


| 


| | 
it 























CSM — Command Sergeant Major 





Dev — Development 


DCD — Directorate of Combat Developments 
DCG — Deputy Commanding General 


| | 
oo | 
pany | Indiv & Coll || New Systems | | MI Library || TMSB 
| Doctrine | Faculty | Training Training 
ipo Indicates support relationship 
Key: DTO — Digital Training Office 
Bde — Brigade NCOA — Noncommissioned Officer Academy 


QAO 


— Quality Assurance Office 

TMSB — Training Materials Support Branch 

TSMs — U.S. Army Training and Doctrine Command (TRADOC) 
System Managers 








July-September 2003 


65 








Distance Learning 


by Jobn B. McGovern 





An experienced Distance Learner, 
you participate and learn through dis- 
tributive learning. You are doing so 
now. There are many places to go to 
learn, to study, and to build your 
knowledge base for enriching your 
personal and professional lives. 


Do you remember reading The 
United States Constitution? Have 
you read it lately? 


We the People of the United 
States, in Order to form a more 
perfect Union, establish Justice, 
insure domestic Tranquility, pro- 
vide for the common defence, 
promote the general Welfare, and 
secure the Blessings of Liberty 
to ourselves and our Posterity, do 
ordain and establish this Consti- 
tution for the United States of 
America. 


It is all there on the Internet at http:// 
www.house.gov/Constitution/ 
Constitution.htmI. 


Each of you has a classic that you 
remember reading, perhaps in 
school. When was the last time you 
read it? 


| remember him as if it were yes- 
terday, as he came plodding to 
the inn door, his sea-chest follow- 
ing behind him in a hand- 
barrow—a tall, strong, heavy, nut- 
brown man, his tarry pigtail fall- 
ing over the shoulder of his soiled 
blue coat, his hands ragged and 
scarred, with black, broken nails, 
and the sabre cut across one 
cheek, a dirty, livid white. | 


remember him looking round the 
cover and whistling to himself as 
he did so, and then breaking out 
in that old sea-song that he sang 
so often afterwards: ‘Fifteen men 
on the dead man’s chest—Yo-ho- 
ho, and a bottle of rum!’ (You can 
find it at http://www.online- 
literature.com/stevenson/ 
treasureisland/1/.) 


You can enhance your professional 
education as well through distance 
learning. Have you read this in Sun 
Tzu’s work? 


Hence it is only the enlightened 
ruler and the wise general who will 
use the highest intelligence of the 
army for purposes of spying and 
thereby they achieve great re- 
sults. Spies are a most important 
element in water, because on 
them depends an army's ability 
to move. (See http://classics.mit. 
edu/Tzu/artwar.html for more.) 


When was the last time you went 
to one of your own books and looked 
something up? You just wanted to 
confirm what you already knew or 
you wanted to refresh your memory. 
Nice features of digital libraries are 
the links you find, the ability to catch 
up on the latest changes in your 
areas of interest, the capability of 
refreshing yourself on past training, 
and the capability to see what your 
training future contains. 


The U.S. Army is capitalizing on 
the wealth of knowledge already 
available and building more to hone 
the skills, knowledge, and abilities 


of the force. Identifying the progress 
of the individual distance learner is 
high on the list of things we are 
doing to aid the learner. Learning 
management systems are evolving 
to do this. 


When you visit the Military Intelli- 
gence Distance Learning site, you 
will encounter the current learning 
management system. If you have 
your password, you are in. If you do 
not have your user identification and 
password, you can request an ac- 
count at http://www. intel.army.mil/. 
As you explore the wealth of knowl- 
edge available, you may find some 
of the material is not fully up on the 
latest Learning Management Sys- 
tem. Use what you can. One of the 
other niceties is that your mind is 
free to explore new vistas and revisit 
those that feed your knowledge 
base. 


As a Military Intelligence profes- 
sional, you are invited to participate 
in another part of your distributive 
learning process. You will even find 
some of your career basics that you 
can experience again. ‘ 

*: 





John McGovern is the Senior Training 
Specialist as well as the Program Man- 
ager for the Broadband Intelligence Train- 
ing System (BITS), Training Development 
Integration Division, Training Development 
and Support Directorate, at the U.S. Army 
Intelligence Center and Fort Huachuca. 
Readers may contact him via E-mail at 
john.b.mcgovern@us.army.mil. Robert 
Lane (robert.l.lane@us.army.mil) is the in- 
dividual responsible for the requests com- 
ing in through the Learning Management 
System on the website 








Security Releases Required With Your Articles 
The Military Intelligence Professional Bulletin always welcomes your professional contributions! MIPB does 
require a release signed by your local security officer or SSO stating that your article and the accompanying 
graphics are “unclassified, nonsensitive, and releasable in the public domain.” The release should include your 
name, the title of the article, and contact information for the person who signs the release. We must have a 
signed copy of the security release either mailed or faxed to us. If your installation or agency requires you to 
obtain a public affairs release as well, please do so. 








66 


Military Intelligence 


Professional Reader 


Stray Voltage: War in the Information Age 





In Stray Voltage: War in the 
Information Age, Brigadier Gen- 
eral (U.S. Army, Retired) Wayne 
Hall provides an excellent treatise on 
information operations (10) and their 
application to the battle for knowl- 
edge that very well may be the de- 
ciding factor in future conflict. 


Future opponents, instead of en- 
gaging in conflict as it exists to- 
day, will attempt parity through 
“Knowledge Wars,” battles for in- 
formation that will permit making 
better and quicker decisions while 
denying the enemy the same ad- 
vantage. Warfare will no longer 
occur as an exclusively “kinetic” 
exchange. An over-matched but 
well-funded, well-educated, and 
dedicated enemy will assume a 
more asymmetrical posture, 
simultaneously attacking well- 
coordinated targets, selected for 
cascading effect (much like the 
coordinated attacks of 11 Septem- 
ber 2001.) Success in asymmetri- 
cal war will require knowledge and 
its application to an extent never 
before envisioned by man. 


A “tapestry of systems” intercon- 
nects the world and people have 
the capacity to learn and change. 
Thanks to vast finances and very 
modern education, other organiza- 
tions are or will soon be as tech- 
nologically advanced as the United 
States. Distance and time will no 
longer count. People have never 
experienced the impact of technol- 
ogy as we can expect in the near 
future. Coordination can occur 


July-September 2003 


by Wayne Michael Hall (Annapolis, MD: Naval Institute Press, April 2003), 


248 pages, $36.96, ISBN: I-S9114-350-O 


worldwide, invisibly, at the speed 
of light. “Knowledge war” is inevi- 
table, “information superiority” will 
belong to those who can best use 
the information technology, who 
understand the nature of future con- 
flicts, who engage in asymmetrical 
conflict, and who successfully con- 
duct “knowledge war.” Deception, so- 
phisticated and complex as it is, will 
become a great deal more so. 


What must we do? Assemble the 
personnel, the thinkers, and educate 
them (or hire the expertise) and the 
equipment (much of which perhaps 
does not even exist today). Train, 
wargame, and develop cyber-warriors 
(men and women with the best com- 
puter and intellectual skills, planning 
capabilities, and understanding of 
political and economic, financial, and 
military spheres, as well as the 
existence of far greater relationships 
between man and machine). Per- 
haps we should equip men with 
microchips or microprocessors 
that would enhance the sorting of 
mountains of information or recog- 
nize key relationships. Should we 
employ cyberbots (programs to do 
functions digitally that man cannot 
(search out, acquire, retrieve, sort, 
stand sentry, decoy, manipulate, or 
destroy...digitally, at machine 
speed)? We must develop knowledge 
advantage centers to foctis a vast 
network of agencies and knowledge 
workers. We should also develop a 
joint asymmetric opposing force, 
build a joint information operations 
proving ground, and develop and use 
an Internet replicator. 


Stray Voltage is a frank and 
thought-provoking piece, providing 
a Clear analysis of the highly com- 
plex problems the United States 
faces in 1O and the way ahead, 
while spotlighting the formidable 
obstacles posed by our thinking 
and that of our bureaucrats. BG 
Hall does not sugarcoat the pill. 
He states for example that this 
country’s military leaders need to 
acknowledge that we cannot de- 
velop the type person the cyber- 
warrior must be. 


There is a great deal of good ma- 
terial out there with which to oc- 
cupy one’s precious reading time. 
Make time for this one. It is sim- 
ply a must-read for all military and 
military intelligence. 


Dick Cameron 
Chief Warrant Officer Five, 
(U.S. Army, Retired) 


Colorado Springs, Colorado 








Attention NCOs 


Send us your articles and book 
reviews. If you have any experi- 
ence you can share on MI doctrine, 
professional development, or 
“how-to” tips, please send them 
to Military Intelligence. Topics of 
interest for future issues include: 
ISR, SIGINT, IMINT, war on terror- 
ism, OEF, OIF, and tactical opera- 
tions. E-mail them to mipb@hua. 
army.mil or call (520) 533-9968/ 
1005 or DSN 821 or 879, respec- 
tively. 




















67 








Contact Information 
and Submissions 








This is your magazine and we need your support 
in writing articles for publication. When writing an 
article, select a topic relevant to the Military Intelligence 
community; it could be historical or about current op- 
erations and exercises, equipment, TTPs, or training. 
Explain lessons learned or write an essay-type thought- 
provoking article. Short “quick tips” on better use of 
equipment, personnel, or methods of problem-solving 
and articles from “hot spots” are always welcome. Seek 
to add to the professional knowledge of the MI Corps. 
Propose changes, describe a new theory or dispute an 
existing one, explain how your unit has broken new 
ground, give helpful advice on a specific topic, or ex- 
plain how a new piece of technology will change the 
way we operate. 


Maintain the active voice as much as possible. 
Make your point. Avoid writing about internal organi- 
zational administration. If your topic is a new piece 
of technology, tell the readers why it is important, 
how it works better, and how it will affect them. Avoid 
lengthy descriptions of who approved it, quotations 
from senior leaders describing how good it is, or 
reports your organization filed regarding the system, 
etc. Note: Mailings become the property of MIPB 
and may be released to other government agencies 
or non-profit organizations for republication upon re- 
quest. 


The MIPB staff will edit the articles and put them ina 
style and format appropriate for the magazine. You can 
send articles, graphics, and photographs via E-mail to 
mipb@hua.army.mil or del.stewart@us.army.mil 
and liz.mcgovern@us.army.mil or mail (with a soft 
copy on disk) to ATTN: ATZS-FDT-M, Bldg 61730, 
Room 105, U.S. Army Intelligence Center and Fort 
Huachuca, 550 Cibeque Street, Fort Huachuca, AZ 
85613-7017. (Please do not use special document tem- 
plates and attach the graphics separately.) We can 


accept articles in Microsoft Office 2000, Word 7.0, 
and ASCII; we need the graphics in Adobe, tif, jpg, 
Corel, or PowerPoint (in order of preference). Please 
include with your article: 


Q) Acover letter with your work and home E-mail 
addresses, work telephone number, and a com- 
ment stating your desire to have the article pub- 
lished. 

) Arelease signed by your local security officer or 
SSO stating that your article is unclassified, non- 
sensitive, and releasable in the public domain (see 
page 66). 

Q) Pictures, graphics, and crests/logos with adequate 
descriptions. Submit clear “action” photos that il- 
lustrate your article with captions for the photos 
(the who, what, where, when, why, and how); the 
photographer credits; and include the author's 
name on photos. Please do not embed graphics 
in the article text. 

) The full name of each author in the byline and a 
short biography for each. The biography should 
include the author’s current duty position, related 
assignments, relevant civilian degrees (degree, 
school, major), and any special qualifications. 
(Please indicate whether we can print your tele- 
phone number and your E-mail address with the 
biography.) 

We cannot guarantee we will publish all submitted 
articles but will send you a message acknowledging 
its receipt. We may notify you again when we get ready 
to publish it. Please inform us of any changes in con- 
tact information as it can take a year or more before 
we publish some articles. 


If you have any questions, please call (520) 533-9968 
(DSN 821) or (520) 538-1005 (DSN 879). 








Intelligence and Electronic Warfare 


(Continued from page 50) 











Common Ground System-Army 
(DCGS-A). The IEWTPT trains the 
battle commander by driving the 
command, staff, and intelligence in- 
formation systems as wartime would 
drive them. =i 


So 





68 


Captain Misty Martin is the Commander 
of the Headquarters and Headquarters 
Company (HHC) at the Fort Knox Garri- 
son, Kentucky. She is a graduate of 
Western Kentucky University where she 
received a Bachelor of Arts degree in 
Psychology. Commissioned as a Sec- 
ond Lieutenant in the Military Intelligence 
Corps, her previous assignments in- 
clude Chief of Intelligence Systems 


Fielding, New Systems Training Office, 
Fort Huachuca, Arizona; Unmanned 
Aerial Vehicle Platoon Leader, 304th MI 
Battalion; Analysis and Control Element 
Chief of Current Intelligence, | Corps; 
555th Combat Engineer Brigade S2; | 
Corps G2 Intelligence Officer; and Chief 
of Tactical Fusion, 306th MI Battalion. 
Readers may contact CPT Martin via E- 
mail at misty.martin@knox.army.mil. 


Military Intelligence 


310th Military Intelligence Battalion 


Oriental blue is the primary color associated 
with the Military Intelligence Corps. ‘Black 
and silver symbolize overt and covert opera- 
tions and the organization's around-the-clock 
vigilance. The organization's Griffin embod- 
ies alertness; it is black, recalling determina- 
tion and stealth. The unit's collection and 
exploitation mission is highlighted by the 
cramps or hooks. The hooks simulate flashes, 
representing speed and combat electronic 
warfare while alluding to the ability to catch 
and hold. Attached around the base is a black 
scroll doubled and inscribed “ARRECTIS 
AURIBUS,” Latin for the unit's motto. 


Tracing its lineage directly from the U.S. 
Army Technical Services Detachment 
(USATSD), the 310th MI Battalion’s lineage 
and honors originate with Headquarters and 
Headquarters Detachment, 310th Commu- 
nications Reconnaissance Battalion. 


On 12 April 1976, the USATSD redesignated 
as the U.S. Army Operational Security Group 
(OSG). 


Reformed on 2 May 1977 as the 91st MI Battalion (Provisional), the Battalion received the U.S. Army Security 
Detachment Region | assets from the Signal Security Activity, Vint Hill Farms Station, Virginia. This enabled the 
Battalion to provide intelligence support covering the entire intelligence spectrum. 


On 1 January 1978, the Battalion’s designation changed to the Counterintelligence and Signal Security Support 


Battalion. Then on 1 October 1984, the Battalion redesignated as the MI Battalion (Counterintelligence) East Coast 
(known as the “East Coast Battalion’). 





On 1 October 1986, after four more realignment phases, the Battalion redesignated as the MI Battalion (Counter- 
intelligence) (Technical). Under the new alignment, all previously assigned subordinate MI Detachments and Resi- 
dent Offices were assigned to MI Battalion (Counterintelligence) (Security) [currently the 308th MI Battalion]. On 24 
May 1991, Headquarters and Headquarters Detachment formally activated and in July 1991 consolidated into 
Headquarters and Headquarters Company. On 25 May 1992, the Army reassigned the Pentagon Counterintelli- 
gence Force [now a company] to the Battalion. 


Redesignated as the Counterintelligence (Counterespionage) Battalion in the spring of 1993, the Battalion devel- 
oped a multidiscipline approach to Cl investigations, shifting away from single-discipline technical services to 
comprehensive counterespionage investigations. As part of this reorganization, the Battalion integrated several 
detachments into the Technical Support Detachment (TSD). TSD redesignated as the Technical Operations Com- 
pany on 6 June 1994 and again redesignated as B Company on 1 October 1994. 


On 16 October 1995, the Battalion shifted from a table of distribution and allowances (TDA) to an modified table 
of organization and equipment (MTOE) unit and redesignated as the 310th MI Battalion (Provisional). 


The Battalion officially redesignated as the 310th MI Battalion on 1 July 1996 and unfurled its colors on Fort 
George G. Meade, Maryland, at the 902d MI Group change of command ceremony. 


In early 1999, the Battalion transferred its Resident Offices to the 308th MI Battalion; the 310th Battalion received 
several elements from the inactivating 716th Mi Battalion. These were the Army Counterintelligence Center, the 
Freedom of Information/Privacy Act Office, and the Investigative Records Repository. 


ALWAYS ON THE ALERT! 





ATTN ATZS-FDT-M (12) ; PRESORTED STANDARD 
USAIC AND FORT HUACHUCA U.S. POSTAGE & FEES PAID 


550 CIBEQUE STREET NIAGARA FALLS, NY 14304 
FORT HUACHUCA AZ 85613-7017 PERMIT NO. 28 








Headquarters, Department of the Army. : i 
This publication is approved for public release. <x PIN: 080837-000 & 
Distribution unlimited. Sa nies 














